Use-after-free in Linux kernel - CVE-2026-89624
Published: September 12, 2026
Vulnerability details
The vulnerability allows a local user to write to freed memory.
The vulnerability exists due to improper resource shutdown in universal_pidff_probe() when opening a surviving /dev/hidrawX device after force-feedback initialization fails. A local user can open the surviving device to write to freed memory.
A descriptor with a PID usage page and no input reports can cause force-feedback initialization to fail after the device starts.