Use-after-free in Linux kernel - CVE-2026-90395

 

Use-after-free in Linux kernel - CVE-2026-90395

Published: September 18, 2026


Vulnerability identifier: #VU151075
CSH Severity: Low
CVSS v4: 0 [CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:N/VC:N/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-90395
CWE-ID: CWE-416
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local privileged user to access freed power supply state.

The vulnerability exists due to a use-after-free in the isp1704 charger driver's remove path when queued or running work executes during device removal. A local privileged user can cause work scheduled by USB notification or initial VBUS detection to execute after the power supply state is torn down to access freed power supply state.


Affected software

Linux kernel

How to mitigate CVE-2026-90395

Install security update from vendor's repository.

Linux kernel - update to 7.0 rc3

External References

Related Security Bulletins