PT-2026-64549 · Linux+1 · Linux Kernel+1

CVE-2026-64328

·

Published

2026-07-25

·

Updated

2026-09-07

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A memory leak occurs in the USB gadget functionfs module. In the ffs dmabuf transfer() function, a ffs dma fence object is allocated and initialized, but the initial reference count is not properly released after a second reference is created by dma resv add fence(). While ffs dmabuf cleanup() decreases the reference count, it only balances the reference acquired in ffs dmabuf signal done(), leaving the original reference active. This results in a gradual leak of memory as ffs dma fence objects are created without being freed.
Recommendations As a temporary mitigation, restrict the use of the ffs dmabuf transfer() function. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Leak

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-64328
OPENSUSE-SU-2026:11476-1
USN-8726-1
USN-8727-1
USN-8728-1

Affected Products

Linux Kernel
Ubuntu