Количество 5
Количество 5
CVE-2026-90020
(In the Linux kernel, the following vulnerability has been resolved: U ...)
CVE-2026-90020
In the Linux kernel, the following vulnerability has been resolved: USB: gadget: fix NULL pointer dereference in gadget_dev_ioctl() gadget_dev_ioctl() reads dev->gadget before acquiring dev->lock, but dev->state is checked after acquiring the lock. Therefore a concurrent bind can change the device state between these operations, which can leave ioctl with a stale NULL gadget pointer and causing a NULL pointer dereference at gadget->ops->ioctl. Read dev->gadget while holding dev->lock so that the gadget pointer and device state are sampled consistently.
CVE-2026-90020
USB: gadget: fix NULL pointer dereference in gadget_dev_ioctl()
CVE-2026-90020
In the Linux kernel, the following vulnerability has been resolved: U ...
GHSA-gf8h-9qpm-2gf3
In the Linux kernel, the following vulnerability has been resolved: USB: gadget: fix NULL pointer dereference in gadget_dev_ioctl() gadget_dev_ioctl() reads dev->gadget before acquiring dev->lock, but dev->state is checked after acquiring the lock. Therefore a concurrent bind can change the device state between these operations, which can leave ioctl with a stale NULL gadget pointer and causing a NULL pointer dereference at gadget->ops->ioctl. Read dev->gadget while holding dev->lock so that the gadget pointer and device state are sampled consistently.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-90020 (In the Linux kernel, the following vulnerability has been resolved: U ...) | 0% Низкий | 5 дней назад | ||
CVE-2026-90020 In the Linux kernel, the following vulnerability has been resolved: USB: gadget: fix NULL pointer dereference in gadget_dev_ioctl() gadget_dev_ioctl() reads dev->gadget before acquiring dev->lock, but dev->state is checked after acquiring the lock. Therefore a concurrent bind can change the device state between these operations, which can leave ioctl with a stale NULL gadget pointer and causing a NULL pointer dereference at gadget->ops->ioctl. Read dev->gadget while holding dev->lock so that the gadget pointer and device state are sampled consistently. | 0% Низкий | 6 дней назад | ||
CVE-2026-90020 USB: gadget: fix NULL pointer dereference in gadget_dev_ioctl() | 0% Низкий | 5 дней назад | ||
CVE-2026-90020 In the Linux kernel, the following vulnerability has been resolved: U ... | 0% Низкий | 6 дней назад | ||
GHSA-gf8h-9qpm-2gf3 In the Linux kernel, the following vulnerability has been resolved: USB: gadget: fix NULL pointer dereference in gadget_dev_ioctl() gadget_dev_ioctl() reads dev->gadget before acquiring dev->lock, but dev->state is checked after acquiring the lock. Therefore a concurrent bind can change the device state between these operations, which can leave ioctl with a stale NULL gadget pointer and causing a NULL pointer dereference at gadget->ops->ioctl. Read dev->gadget while holding dev->lock so that the gadget pointer and device state are sampled consistently. | 0% Низкий | 6 дней назад |
Уязвимостей на страницу