GHSA-47j5-5c6r-5qfhunknown
In the Linux kernel, the following vulnerability has been resolved: usb: core: hcd: fix possible...
🔗 CVE IDs covered (1)
📋 Description
In the Linux kernel, the following vulnerability has been resolved:
usb: core: hcd: fix possible deadlock in rh control transfers
From within the SCSI error handler memory allocations must not trigger IO. Handling errors in UAS and the storage driver may involve resetting a device. The thread doing the reset itself relies on VM magic. However, that is insufficient, as resetting a device involves resuming it. Resumption as well as resetting involves conrol transfers to the parent of the device to be reset. That may be a root hub. Hence usbcore must heed the flags passed to usb_submit_urb() processing control transfers to root hubs.
The problem exist since the storage driver has been merged.
🔗 References (9)
- https://nvd.nist.gov/vuln/detail/CVE-2026-97483
- https://git.kernel.org/stable/c/549672a3fb6b36ea408238f89ecf9f41d2da6225
- https://git.kernel.org/stable/c/d5559f43d76b398392b26a15cbc16d731969cd1c
- https://git.kernel.org/stable/c/fff917c85d37a294397c5440a795591ca9d6b602
- https://git.kernel.org/stable/c/8461eda5af77c44d216cec66455bd5b01ee35c9a
- https://git.kernel.org/stable/c/8f82fc3d72e5feb7a1efae94b51b431c5bf41c86
- https://git.kernel.org/stable/c/936b08d87c667031725bcc753007e7c1182548c6
- https://git.kernel.org/stable/c/d0291fb4d91982d9f6a680bf759ff0555d351ecb
- https://github.com/advisories/GHSA-47j5-5c6r-5qfh