Home

Description

In the Linux kernel, the following vulnerability has been resolved: usb: usbtmc: Flush anchored URBs in usbtmc_release When calling usbtmc_release, pending anchored URBs must be flushed or killed to prevent use-after-free errors (e.g. in the HCD giveback path). Call usbtmc_draw_down() to allow anchored URBs to be completed.

PUBLISHED Reserved 2026-03-09 | Published 2026-05-01 | Updated 2026-05-03 | Assigner Linux




HIGH: 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Product status

Default status
unaffected

4f3c8d6eddc272b386464524235440a418ed2029 (git) before 959ef329071136e4335b54822fe2f607659b4569
affected

4f3c8d6eddc272b386464524235440a418ed2029 (git) before e189d443767f7cd390c52f2e122e1fc41c7562d6
affected

4f3c8d6eddc272b386464524235440a418ed2029 (git) before 7fa8f61bab3fb75b5deba8a0f3abb74dc5068d9f
affected

4f3c8d6eddc272b386464524235440a418ed2029 (git) before 95e09b07e50290254b28b8395509473104518f8c
affected

4f3c8d6eddc272b386464524235440a418ed2029 (git) before d13318dec0c1e0e2ac16f8ecbd522db14cea4bb1
affected

4f3c8d6eddc272b386464524235440a418ed2029 (git) before 977b632db51d231dec0bc571089a5c2402674139
affected

4f3c8d6eddc272b386464524235440a418ed2029 (git) before d40198de50232e04c14c6e2092e896766c95ea48
affected

4f3c8d6eddc272b386464524235440a418ed2029 (git) before 8a768552f7a8276fb9e01d49773d2094ace7c8f1
affected

Default status
affected

4.19
affected

Any version before 4.19
unaffected

5.10.253 (semver)
unaffected

5.15.203 (semver)
unaffected

6.1.168 (semver)
unaffected

6.6.134 (semver)
unaffected

6.12.81 (semver)
unaffected

6.18.22 (semver)
unaffected

6.19.12 (semver)
unaffected

7.0 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/959ef329071136e4335b54822fe2f607659b4569

git.kernel.org/...c/e189d443767f7cd390c52f2e122e1fc41c7562d6

git.kernel.org/...c/7fa8f61bab3fb75b5deba8a0f3abb74dc5068d9f

git.kernel.org/...c/95e09b07e50290254b28b8395509473104518f8c

git.kernel.org/...c/d13318dec0c1e0e2ac16f8ecbd522db14cea4bb1

git.kernel.org/...c/977b632db51d231dec0bc571089a5c2402674139

git.kernel.org/...c/d40198de50232e04c14c6e2092e896766c95ea48

git.kernel.org/...c/8a768552f7a8276fb9e01d49773d2094ace7c8f1

cve.org (CVE-2026-31758)

nvd.nist.gov (CVE-2026-31758)

Download JSON