๐Ÿ” CVE Alert

CVE-2026-93121

UNKNOWN 0.0

usb: gadget: f_fs: Fix fence cleanup in ffs_dmabuf_transfer() error paths

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Fix fence cleanup in ffs_dmabuf_transfer() error paths The error paths for endpoint-disabled (ESHUTDOWN) and request-allocation failure (ENOMEM) in ffs_dmabuf_transfer() jump to err_fence_put which calls dma_fence_put() on the fence. However, at that point the fence has only been kmalloc'd โ€” dma_fence_init() has not been called yet, so the refcount and the fence ops are uninitialized. Calling dma_fence_put() on such an object leads to undefined behavior. Use kfree() instead, since the fence is just a plain allocation at this stage, and rename the label to err_fence_free to reflect the actual cleanup action.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 17, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
7b07a2a7ca02a20124b552be96c5a56910795488 < be539138d9a187af3b884525a395db10797c64f1 7b07a2a7ca02a20124b552be96c5a56910795488 < 5fd8baacc7dc477df9cac61b45491840247a9b1e 7b07a2a7ca02a20124b552be96c5a56910795488 < 58952c83dfe6ea3294a74734d2d1018c1120779a 7b07a2a7ca02a20124b552be96c5a56910795488 < 621707dc67c9846fd876d7579ec951d92aa033f1
Linux / Linux
6.9

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/be539138d9a187af3b884525a395db10797c64f1 git.kernel.org: https://git.kernel.org/stable/c/5fd8baacc7dc477df9cac61b45491840247a9b1e git.kernel.org: https://git.kernel.org/stable/c/58952c83dfe6ea3294a74734d2d1018c1120779a git.kernel.org: https://git.kernel.org/stable/c/621707dc67c9846fd876d7579ec951d92aa033f1