PT-2026-43941 · Opensuse+1 · Opensuse Tumbleweed+1

Published

2026-05-27

·

Updated

2026-06-04

·

CVE-2026-46074

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified) openSUSE Tumbleweed versions prior to kernel-devel-7.0.11-1.1
Description A memory leak and use-after-free issue exists in the spi: ch341 driver. The problem occurs during probe failures when the controller is not properly deregistered, pins are not disabled, and the RX URB (USB Request Block, a data structure used to describe a USB transfer) is not killed and freed. This lack of symmetry with the disconnect process leads to the resource leaks.
Recommendations Update to kernel-devel-7.0.11-1.1 for openSUSE Tumbleweed. At the moment, there is no information about a newer version that contains a fix for this vulnerability for the Linux kernel.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-46074
OPENSUSE-SU-2026:10954-1

Affected Products

Linux Kernel
Opensuse Tumbleweed