GHSA-6x39-q2c6-8xg8unknown

In the Linux kernel, the following vulnerability has been resolved: virtio_input: reset device...

Published
September 25, 2026
Last Modified
October 3, 2026

🔗 CVE IDs covered (1)

📋 Description

In the Linux kernel, the following vulnerability has been resolved:

virtio_input: reset device if input_register_device() fails

Probe marks the device DRIVER_OK with virtio_device_ready() before calling input_register_device(). If registration fails, the error path cleared vi->ready and called del_vqs() while the device was still live, so the device could keep DMA to queues that were already torn down.

Match remove/freeze: call virtio_reset_device() on that path before tearing down the virtqueues.

🔗 References (8)