VYPR
Medium severity5.5NVD Advisory· Published Jul 25, 2026· Updated Sep 3, 2026

CVE-2026-64332

CVE-2026-64332

Description

In the Linux kernel, the following vulnerability has been resolved:

USB: ulpi: fix memory leak on registration failure

The allocated device name is never freed on early ULPI device registration failures.

Fix this by initialising the device structure earlier and releasing the initial reference whenever registration fails.

Affected products

4

Patches

Vulnerability mechanics

References

8

News mentions

2