Junglewise Threat Intelligence

CVE-2026-64338: Linux Kernel use-after-free in USS720 USB driver probe failure

CVE-2026-64338 · Severity: info · CVSS 0 · Published 2026-07-25

Technologies: Linux Kernel. Vendors: Linux.

Executive brief

A vulnerability was identified in the Linux kernel's USS720 USB-to-parallel port driver. When the driver fails to initialize a specific type of hardware adapter, it fails to properly clean up system resources, leaving behind a 'stale' reference to memory that has already been deleted. This could potentially lead to system instability or a crash if the system attempts to access the invalid memory location.

Technical details

A vulnerability exists in the uss720_probe() function within drivers/usb/misc/uss720.c. The driver registers a parport device before validating the hardware via get_1284_register(). If this validation fails, the error path releases the driver's private data but fails to unregister the parport. This leaves the parport bus device registered with a stale pointer (pp->private_data) pointing to the freed memory. An attacker with physical access to plug in a specially crafted or incompatible USB device could trigger this error path, potentially leading to a use-after-free or kernel oops. The fix ensures parport_del_port() is called and pointers are cleared before the private data is freed.

Affected products

  • Linux Linux Kernel uss720.c driver

Timeline

  • 2026-07-07: patched: Initial patch authored
  • 2026-07-25: disclosed: CVE published

References

Related threats