PT-2025-51691 · Linux+4 · Linux Kernel+4

Published

2025-12-16

·

Updated

2026-05-07

·

CVE-2025-68287

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains a flaw related to a race condition within the dwc3 remove requests() function. This occurs due to unsynchronized execution of multiple call paths, potentially leading to premature freeing of USB requests and system crashes. Three distinct paths trigger this issue: one during USB reset handling, another also initiated from USB reset handling via dwc3 stop active transfers(), and a third during adb root execution. The asynchronous nature of the third path, combined with a lack of synchronization with the other two, can result in use-after-free conditions when accessing freed memory. The function dwc3 remove requests() is central to this issue, and the call stack includes functions like dwc3 gadget del and unmap request(), dwc3 ep0 reset state(), and dwc3 stop active transfers().
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Related Identifiers

ALSA-2026:0453
ALSA-2026:0793
CVE-2025-68287
ECHO-9C77-56F0-C261
MGASA-2026-0017
MGASA-2026-0018
OPENSUSE-SU-2026:20145-1
RHSA-2026:0453
RHSA-2026:0457
RHSA-2026:0489
RHSA-2026:0534
RHSA-2026:0535
RHSA-2026:0537
RHSA-2026:0576
RHSA-2026:0793
SUSE-SU-2026:0278-1
SUSE-SU-2026:0281-1
SUSE-SU-2026:0293-1
SUSE-SU-2026:0315-1
SUSE-SU-2026:1078-1
SUSE-SU-2026:20207-1
SUSE-SU-2026:20220-1
SUSE-SU-2026:20228-1
SUSE-SU-2026:20477-1
SUSE-SU-2026:20498-1
SUSE-SU-2026:20845-1
SUSE-SU-2026:20876-1
USN-8094-1
USN-8094-2
USN-8094-3
USN-8094-4
USN-8094-5
USN-8095-1
USN-8095-2
USN-8095-3
USN-8095-4
USN-8095-5
USN-8096-1
USN-8096-2
USN-8096-3
USN-8096-4
USN-8096-5
USN-8100-1
USN-8116-1
USN-8125-1
USN-8126-1
USN-8141-1
USN-8152-1
USN-8163-1
USN-8163-2
USN-8165-1
USN-8243-1
USN-8261-1

Affected Products

Debian
Linuxmint
Linux Kernel
Rocky Linux
Ubuntu