Use-after-free in Linux kernel - CVE-2026-64363
Published: July 27, 2026
Vulnerability details
The vulnerability allows a local attacker to execute arbitrary code or cause a denial of service.
The vulnerability exists due to use-after-free in the appleir HID driver when processing concurrent device teardown and timer or raw event handling. A local attacker can trigger device disconnection shortly after key events to execute arbitrary code or cause a denial of service.
Exploitation requires a pending key-up timer or concurrent raw event activity to race with device removal.
Affected software
Debian Linux
linux (Debian package)
How to mitigate CVE-2026-64363
linux (Debian package) - update to 6.12.100-1
External References
- https://git.kernel.org/stable/c/05e3decc55d1deca9410e0eb36466651fcbe57a5
- https://git.kernel.org/stable/c/3755f6e25776b8b12ddf062f9b573f05090e4034
- https://git.kernel.org/stable/c/37a52c61d4f78153c38ae1f7491dfcc8ac828dcf
- https://git.kernel.org/stable/c/3d30a0bb0e79621ae921b487835c56198adfafa3
- https://git.kernel.org/stable/c/6b0838e86da88b1d3bff86f19761ff25af73eaca
- https://git.kernel.org/stable/c/75fe87e19d8aff81eb2c64d15d244ab8da4de945
- https://git.kernel.org/stable/c/89ef67359672bf4cd6921524e39f61648fe38c0f
- https://git.kernel.org/stable/c/b363d964ca829c1761c9f04188dfa28f90b0f2d4