PT-2026-69767 · Linux · Linux Kernel

CVE-2026-68367

·

Published

2026-08-10

·

Updated

2026-08-23

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the USB gadget f tcm module where the set alt() path defers endpoint setup to a work item. This delayed work utilizes f tcm private state and may attempt to complete the setup request after the function has been unbound or the device has been disconnected, leading to a slab-use-after-free condition in the tcm delayed set alt() function. A slab-use-after-free is a memory corruption error that occurs when a program continues to use a pointer after the memory it points to has been freed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-95066
CVE-2026-68367

Affected Products

Linux Kernel