CVE-2026-64242
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: net2280: Fix double free in probe error path usb_initialize_gadget() installs gadget_release() as the release callback for the embedded gadget device. The struct net2280 instance is therefore released through gadget_release() when the gadget device's last reference is dropped. The probe error path calls net2280_remove(), which tears down the partially initialized device and drops the gadget reference with usb_put_gadget(). Calling kfree(dev) afterwards can free the same object again. Drop the explicit kfree() and let the gadget device release callback handle the final free. This issue was found by a static analysis tool I am developing.
Schwachstellenklasse
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: net2280: Fix double free in probe error path usb_initialize_gadget() installs gadget_release() as the release callback for the embedded gadget device. The struct net2280 instance is therefore released through gadget_release() when the gadget device's last reference is dropped. The probe error path calls net2280_remove(), which tears down the partially initialized device and drops the gadget reference with usb_put_gadget(). Calling kfree(dev) afterwards can free the same object again. Drop the explicit kfree() and let the gadget device release callback handle the final free. This issue was found by a static analysis tool I am developing.
Betroffene Produkte
- linux linux_kernel
Quellen
- https://git.kernel.org/stable/c/085652fda7f38040d1a2c42d72614f418feb843f
- https://git.kernel.org/stable/c/48f89ead20e48d447ad29fa937b43b9fa981cf28
- https://git.kernel.org/stable/c/550fa4d071a8c8e53072900869d37ae6abf4999d
- https://git.kernel.org/stable/c/71b3391dc81655ff058492f8e9d013b2c6e5747b
- https://git.kernel.org/stable/c/c5b9fdb1e8ddf50bc6272927edb118679f170350
- https://git.kernel.org/stable/c/c8547c74988e0b5f4cbb1b895e2a57aae084f070
Finden Sie die Schwachstelle, bevor es ein Angreifer tut.
Melden Sie sich mit GitHub an und starten Sie Ihr erstes Audit in weniger als einer Minute. Für den kostenlosen Plan ist keine Kreditkarte nötig.