CVE-2026-93826

Summary

In the Linux kernel, the following vulnerability has been resolved:

HID: hidpp: fix potential UAF in hidpp_connect_event()

If input_register_device() fails, we call input_free_device(), but keep stale pointer to the old device in hidpp->input, which could potentially lead to UAF. Fix that by resetting it to NULL before returning from hidpp_connect_event().

Affected Software

VendorProductVersion RangeStatus
LinuxLinuxc39e3d5fc9dd3e16c6f59dd94d827540040de66d < 3b8b2e58b078cd30e121401535541bb8a6d57133affected
LinuxLinuxc39e3d5fc9dd3e16c6f59dd94d827540040de66d < 3303398cc2aa255ba251650a30024e11d48ea6c3affected
LinuxLinuxc39e3d5fc9dd3e16c6f59dd94d827540040de66d < 6df6b1f2c49678211f65647c300bc51dda02893baffected
LinuxLinux3.19affected
LinuxLinux0 < 3.19unaffected
LinuxLinux6.12.111 <= 6.12.*unaffected
LinuxLinux6.18.53 <= 6.18.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References