Use-after-free in Linux kernel - CVE-2026-64491
Published: July 27, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to use-after-free in tascam_disconnect() in sound/usb/usx2y/us144mkii.c when handling device disconnect events and deferred USB work. A local user can trigger a device disconnect race to cause a denial of service.
The issue occurs because self-resubmitting URBs can complete after work cancellation and re-arm work that later runs on freed memory.