SB2026091677 - Use-after-free in Linux kernel usb usbtv driver
Published: September 16, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Use-after-free (CVE-ID: CVE-2026-90032)
CWE-ID: CWE-416 - Use After Free
CVSSv4: 8.5 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
The vulnerability allows a local user to compromise confidentiality, integrity, and availability.
The vulnerability exists due to use-after-free in snd_usbtv_pcm_close() in the usbtv audio driver when closing an ALSA PCM file after USB disconnect. A local user can close a previously opened ALSA PCM file after USB disconnect to compromise confidentiality, integrity, and availability.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/1618257cb0aba4ce342ae8c0228368c24161f5fb
- https://git.kernel.org/stable/c/239d1683e08b2aee2a15ef35706e1ea9a76681d8
- https://git.kernel.org/stable/c/503be26ff888cb3576e55d251895d290e8146f27
- https://git.kernel.org/stable/c/67374e3a00814dcdd46e9feca61f69f7f2d81957
- https://git.kernel.org/stable/c/7690a86b193271322cd31ab77349a87aa10858e4
- https://git.kernel.org/stable/c/97b5e8b22b98e287481a97a9a4cfebbb348738a5
- https://git.kernel.org/stable/c/be0f7745f883386e5263b4e475686a81dfa87175
- https://git.kernel.org/stable/c/fc530fe168bb2b745a93f553ad21fc25fd9cba3d