Vulnerability Bulletins

CVE-2026-43430

   
Affected software LINUX KERNEL
 
In the Linux kernel, the following vulnerability has been resolved:

usb: yurex: fix race in probe

The bbu member of the descriptor must be set to the value
standing for uninitialized values before the URB whose
completion handler sets bbu is submitted. Otherwise there is
a window during which probing can overwrite already retrieved
data.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-43430