Use-after-free in Linux kernel - CVE-2026-89625
Published: September 12, 2026
Vulnerability details
The vulnerability allows a local privileged user to cause a use-after-free condition.
The vulnerability exists due to use-after-free in GHL poke timer handling in the hid-sony driver when handling driver unbind while a GHL poke URB is in flight. A local privileged user can trigger a driver unbind while the GHL poke URB is in flight to cause a use-after-free condition.
The issue affects Guitar Hero Live dongles, where a URB completion can re-arm the timer after driver teardown.