CVE-2026-64343

Source
https://cve.org/CVERecord?id=CVE-2026-64343
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-64343.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-64343
Downstream
Published
2026-07-25T08:50:05.828Z
Modified
2026-07-27T04:03:21.925008268Z
Summary
USB: ldusb: fix use-after-free on disconnect race
Details

In the Linux kernel, the following vulnerability has been resolved:

USB: ldusb: fix use-after-free on disconnect race

mutex_unlock() may access the mutex structure after releasing the lock and therefore cannot be used to manage lifetime of objects directly (unlike spinlocks and refcounts). [1][2]

Use a kref to release the driver data to avoid use-after-free in mutex_unlock() when release() races with disconnect().

[1] a51749ab34d9 ("locking/mutex: Document that mutexunlock() is non-atomic") [2] 2b9d9e0a9ba0 ("locking/mutex: Clarify that mutexunlock(), and most other sleeping locks, can still use the lock object after it's unlocked")

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/64xxx/CVE-2026-64343.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
ce0d7d3f575fc1ba6a89c3c651e710355590daff
Fixed
fc55923a972e715f9a27187b47d4920709e23d85
Fixed
e5a9bdce4bfd3e2226b5f3df5fb8385d6935ee69
Fixed
af59829e67e11ba2511a9f8e4b9111afc7d1f550
Fixed
02ca08fff74cf9b0a3c4d2cacde1c6edeeb95bb4
Fixed
d8f69404e1d671326f86d378b9f5bfbd56490e9d
Fixed
2107a4fc8ff1cf1d52f416c1e5cc8e97413a5915
Fixed
a3e794136ab5e3ad1e7019175a4b837aec86db4b
Fixed
19bdfc7b3c179331eafa423d87e1336f43bbfeb8

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-64343.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
2.6.26
Fixed
5.10.261
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.212
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.178
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.145
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.96
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.39
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-64343.json"