CVE Database
/

CVE-2025-68290

Back to search

CVE-2025-68290

Published: Dec 16, 2025

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: most: usb: fix double free on late probe failure The MOST subsystem has a non-standard registration function which frees the interface on registration failures and on deregistration. This unsurprisingly leads to bugs in the MOST drivers, and a couple of recent changes turned a reference underflow and use-after-free in the USB driver into several double free and a use-after-free on late probe failures.

VendorProductVersions

Linux

Linux

affected
723de0f9171eeb49a3ae98cae82ebbbb992b3a7c - < 90e6ce2b1b19fb8b9d4afee69f40e4c6a4791154
affected
723de0f9171eeb49a3ae98cae82ebbbb992b3a7c - < a4c4118c2af284835b16431bbfe77e0130c06fef
affected
723de0f9171eeb49a3ae98cae82ebbbb992b3a7c - < 0dece48660be16918ecf2dbdc7193e8be03e1693
affected
723de0f9171eeb49a3ae98cae82ebbbb992b3a7c - < 993bfdc3842893c394de13c8200c338ebb979589
affected
723de0f9171eeb49a3ae98cae82ebbbb992b3a7c - < 2274767dc02b756b25e3db1e31c0ed47c2a78442

+2 more versions

Linux

Linux

affected
5.6
unaffected
0 - < 5.6
unaffected
5.10.247 - <= 5.10.*
unaffected
5.15.197 - <= 5.15.*
unaffected
6.1.159 - <= 6.1.*

+4 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now