LOWVulnerability

CVE-2026-64345

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_printer: take kref only for successful open printer_open() returns -EBUSY when the character device is already open, but it increments dev->kref regardless of the return value. VFS does not call ->release() for a failed open, so every rejected second open permanently leaks one reference. Move kref_get() into the successful-open branch.

Properties

cve_id
CVE-2026-64345
published_at
2026-07-25T10:17:16.623
last_modified
2026-08-11T15:00:57.447

Related Entities (1)

DESCRIBED_BY (1)

[Source]NVD

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-64345 — Ninja Signal Threat Intelligence | Ninja Signal