Improper Initialization in Linux kernel - CVE-2026-64594
Published: August 7, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper initialization in reset_work handling in the functionfs gadget subsystem when unmounting a functionfs instance. A local user can unmount a crafted or affected functionfs instance to cause a denial of service.
The issue is triggered in the common case where the instance was never deactivated, including when it is not mounted with the "no_disconnect" option.
Affected software
Ubuntu
linux (Ubuntu package)
linux-gcp-7.0 (Ubuntu package)
linux-oem-7.0 (Ubuntu package)
How to mitigate CVE-2026-64594
linux (Ubuntu package) - addressed in versions 7.0.0-31.31, 7.0.0-31.31.1, 7.0.0-31.31~24.04.1, 7.0.0-1006.7, 7.0.0-1011.11~24.04.1, 7.0.0-1012.12, 7.0.0-1012.12~24.04.1
linux-gcp-7.0 (Ubuntu package) - update to 7.0.0-1011.11~24.04.1
linux-oem-7.0 (Ubuntu package) - update to 7.0.0-1013.13
External References
- https://git.kernel.org/stable/c/0de6ebbabfbbc9c28350283dc97d8a519d5c6dd7
- https://git.kernel.org/stable/c/3137b243c93982fe3460335e12f9247739766e10
- https://git.kernel.org/stable/c/69faa3779250df14f51d5084f938a99809546e52
- https://git.kernel.org/stable/c/7fe895e0a9651518c4fc082487da770ff9c14c7f
- https://git.kernel.org/stable/c/ba1867999dbc4085e6d8c52ac5266005b8b2bf07
- https://git.kernel.org/stable/c/c36393b0d14e1e9783888f821ffe29381b8f46dc
- https://git.kernel.org/stable/c/cb19e54ebe9baf3c3243083ade65c937339ccb7b
- https://git.kernel.org/stable/c/d5631081be07f20e764d3cb5c98ac0a1004fba51