Improper handling of exceptional conditions in Linux kernel - CVE-2026-63821
Published: July 21, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper exception handling in rtw_usb_write_data() and rtw_usb_tx_agg_skb() when handling USB write submission failures. A local user can trigger a USB write failure to cause a denial of service.
The issue can be triggered during device disconnect or reconnect scenarios and under memory pressure conditions.
Affected software
How to mitigate CVE-2026-63821
External References
- https://git.kernel.org/stable/c/200d58c851b8f63f77a05570072dd20f79bc3681
- https://git.kernel.org/stable/c/2b2060c2075a72bc2de43ce5e1b9347d6c5e27bb
- https://git.kernel.org/stable/c/53fed4061a09755de99c89fdc7fae5b794da455f
- https://git.kernel.org/stable/c/6b964941bbfe6e0f18b1a5e008486dbb62df440a
- https://git.kernel.org/stable/c/8206d173d18ef5a077423119f4e9a93cb3a6f4eb