Medium severity5.5NVD Advisory· Published Apr 24, 2026· Updated Apr 27, 2026
CVE-2026-31672
CVE-2026-31672
Description
In the Linux kernel, the following vulnerability has been resolved:
wifi: rt2x00usb: fix devres lifetime
USB drivers bind to USB interfaces and any device managed resources should have their lifetime tied to the interface rather than parent USB device. This avoids issues like memory leaks when drivers are unbound without their devices being physically disconnected (e.g. on probe deferral or configuration changes).
Fix the USB anchor lifetime so that it is released on driver unbind.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
10cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 8 more
- cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=4.7.1,<5.10.253
- cpe:2.3:o:linux:linux_kernel:4.7:-:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc1:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc2:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc3:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc4:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc5:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc6:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc7:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
8- git.kernel.org/stable/c/15b233e33b35b927bd8d0044c15325564ea1ba24nvdPatch
- git.kernel.org/stable/c/1de5c76bf40e9cdeebf54662f63011fb10fa452fnvdPatch
- git.kernel.org/stable/c/25369b22223d1c56e42a0cd4ac9137349d5a898envdPatch
- git.kernel.org/stable/c/64a457f6afbf15f984d95201a9a1e71eed3f9dd1nvdPatch
- git.kernel.org/stable/c/65518a6965d527c53013947031f26754f6a4f6afnvdPatch
- git.kernel.org/stable/c/b245db719bc7e57abf48bd5701662b270c3880f7nvdPatch
- git.kernel.org/stable/c/c99f198841b41735796e2ddfcd573783fb552eb9nvdPatch
- git.kernel.org/stable/c/e360d15fcb1e819eef49e3d4434d8050542eed16nvdPatch
News mentions
0No linked articles in our index yet.