CVE-2026-31606

Description

A flaw was found in the Linux kernel's USB Human Interface Device (HID) gadget driver. When the /dev/hidg* device is still open during unbind and bind operations, the character device (cdev) is reinitialized while still in use. This unsafe behavior can lead to a system crash, resulting in a Denial of Service (DoS).

Understanding the Weakness (CWE)

Integrity,Availability

Technical Impact: Modify Application Data; DoS: Instability; DoS: Crash, Exit, or Restart

Frequently Asked Questions

Want to get errata notifications? Sign up here.