CVE-2026-64233

Description

A flaw was found in the Linux kernel's USB Video Class (UVC) gadget driver. A privileged local user can exploit a race condition during the binding of a UVC function by concurrently removing an extension subdirectory. This can lead to a use-after-free vulnerability, potentially causing system instability or a denial of service.

Frequently Asked Questions

Want to get errata notifications? Sign up here.