SB20260905113 - Use-after-free in Linux kernel usb core driver
Published: September 5, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Use-after-free (CVE-ID: CVE-2026-80830)
CWE-ID: CWE-416 - Use After Free
CVSSv4: 0 [CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:N/SC:N/SI:N/SA:N]
The vulnerability allows a local user to trigger a use-after-free condition.
The vulnerability exists due to a race condition in usb_wakeup_notification() when an xHCI IRQ invocation occurs concurrently with hub_disconnect(). A local user can trigger concurrent wakeup notification and device disconnection activity to trigger a use-after-free condition.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/04ab260407972e631c86f2bc576cd8e64d65b325
- https://git.kernel.org/stable/c/71cfda2fdf78041a01e9d94143baa79feabbdbf6
- https://git.kernel.org/stable/c/7c48aa0c1e79116b8af4b988d16ee29b427d6491
- https://git.kernel.org/stable/c/960ca456faf61824b178f47967340300b24183db
- https://git.kernel.org/stable/c/975ef630393c07fcbebf94f4d97043161b77a6ce
- https://git.kernel.org/stable/c/a7a16167991c88016acef720927400404039d850
- https://git.kernel.org/stable/c/bf2288583b4e072bdff17a233963619e4bc7a8b5
- https://git.kernel.org/stable/c/d80b946804674069db7ce6657319a71cf8eeaa5a
- https://git.kernel.org/stable/c/e263e18a9e7b1ff3e7301f0801c6ff87c31adfb6