CVE-2026-64337

Source
https://cve.org/CVERecord?id=CVE-2026-64337
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-64337.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-64337
Downstream
Published
2026-07-25T08:50:02.066Z
Modified
2026-07-27T04:03:21.495077597Z
Summary
usb: mtu3: unmap request DMA on queue failure
Details

In the Linux kernel, the following vulnerability has been resolved:

usb: mtu3: unmap request DMA on queue failure

mtu3gadgetqueue() maps the request before checking whether the QMU GPD ring can accept another transfer. the request is returned with -EAGAIN before it is linked on the endpoint request list if mtu3preparetransfer() fails.

Normal completion and dequeue paths unmap requests from mtu3reqcomplete(), but this error path never reaches that helper, so the DMA mapping is left active. Unmap the request before returning from the failed queue path.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/64xxx/CVE-2026-64337.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
df2069acb00569a6299d6e11aa1865eeba463848
Fixed
3cee30f1138281a1d247bb053a1ad4f7c5b04e98
Fixed
f3c4026524d3660c73ef2838b99776d37631e039
Fixed
e8f739a3860d043dcc135371637e82f53132efe5
Fixed
4183874b7925f4a98b400cf857bea26ee87da236
Fixed
00c3fef4c2dc2c7cbd8281f8fda09d1913420f09
Fixed
8c29d9cfab1c3cf0d0b7fcdf9255597be30aa3e1
Fixed
835b0596d4c9bdef93f842d8f826978fb4956b74
Fixed
0bddda5a11665c210339de76d27ebbd1a2e0b43c

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-64337.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.10.0
Fixed
5.10.261
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.212
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.178
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.145
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.96
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.39
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-64337.json"