CVE-2024-26919

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-26919
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-26919.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-26919
Downstream
Related
Published
2024-04-17T15:59:27.581Z
Modified
2025-11-28T02:35:53.038003Z
Summary
usb: ulpi: Fix debugfs directory leak
Details

In the Linux kernel, the following vulnerability has been resolved:

usb: ulpi: Fix debugfs directory leak

The ULPI per-device debugfs root is named after the ulpi device's parent, but ulpiunregisterinterface tries to remove a debugfs directory named after the ulpi device itself. This results in the directory sticking around and preventing subsequent (deferred) probes from succeeding. Change the directory name to match the ulpi device.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/26xxx/CVE-2024-26919.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
bd0a0a024f2a41e7cc8eadb9862f82c45884b69c
Fixed
d31b886ed6a5095214062ee4fb55037eb930adb6
Fixed
330d22aba17a4d30a56f007d0f51291d7e00862b
Fixed
33713945cc92ea9c4a1a9479d5c1b7acb7fc4df3
Fixed
3caf2b2ad7334ef35f55b95f3e1b138c6f77b368

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.18.0
Fixed
6.1.79
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.18
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.7.6