7.8
/ 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Description
In the Linux kernel, the following vulnerability has been resolved:
HID: roccat: fix use-after-free in roccat_report_event
roccat_report_event() iterates over the device->readers list without
holding the readers_lock. This allows a concurrent roccat_release() to
remove and free a reader while it's still being accessed, leading to a
use-after-free.
Protect the readers list traversal with the readers_lock mutex.
HID: roccat: fix use-after-free in roccat_report_event
roccat_report_event() iterates over the device->readers list without
holding the readers_lock. This allows a concurrent roccat_release() to
remove and free a reader while it's still being accessed, leading to a
use-after-free.
Protect the readers list traversal with the readers_lock mutex.
Basic Information
ID
CVE-2026-43111
Source
Linux
Published
May 6, 2026 at 07:40
Modified
May 8, 2026 at 12:40
Affected Product
Vendor
Linux
Product
Linux
Version
206f5f2fcb5ff5bb0c60f9e9189937f3ca03e378
Affected Versions
Linux Linux 206f5f2fcb5ff5bb0c60f9e9189937f3ca03e378
Linux Linux 206f5f2fcb5ff5bb0c60f9e9189937f3ca03e378
Linux Linux 206f5f2fcb5ff5bb0c60f9e9189937f3ca03e378
Linux Linux 206f5f2fcb5ff5bb0c60f9e9189937f3ca03e378
Linux Linux 206f5f2fcb5ff5bb0c60f9e9189937f3ca03e378
Linux Linux 2.6.35
Linux Linux 206f5f2fcb5ff5bb0c60f9e9189937f3ca03e378
Linux Linux 206f5f2fcb5ff5bb0c60f9e9189937f3ca03e378
Linux Linux 206f5f2fcb5ff5bb0c60f9e9189937f3ca03e378
Linux Linux 206f5f2fcb5ff5bb0c60f9e9189937f3ca03e378
Linux Linux 2.6.35
References
- git.kernel.org /stable/c/e6a445513fbc6a0329d2d5ff375b6725750ec5a6
- git.kernel.org /stable/c/e16a6d11bd77b81632165f02cf0d5946df74b3b7
- git.kernel.org /stable/c/36bb2d0b915014bbdc5044982b31b57b78045b93
- git.kernel.org /stable/c/bca0b595e15450dd66b1153c76c4ef1087ee011b
- git.kernel.org /stable/c/d802d848308b35220f21a8025352f0c0aba15c12