PT-2026-64549 · Linux+1 · Linux Kernel+1
CVE-2026-64328
·
Published
2026-07-25
·
Updated
2026-09-07
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
A memory leak occurs in the USB gadget functionfs module. In the
ffs dmabuf transfer() function, a ffs dma fence object is allocated and initialized, but the initial reference count is not properly released after a second reference is created by dma resv add fence(). While ffs dmabuf cleanup() decreases the reference count, it only balances the reference acquired in ffs dmabuf signal done(), leaving the original reference active. This results in a gradual leak of memory as ffs dma fence objects are created without being freed.Recommendations
As a temporary mitigation, restrict the use of the
ffs dmabuf transfer() function. At the moment, there is no information about a newer version that contains a fix for this vulnerability.Exploit
Memory Leak
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linux Kernel
Ubuntu