CVE-2026-80830

Source
https://cve.org/CVERecord?id=CVE-2026-80830
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-80830.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-80830
Downstream
Related
Published
2026-09-04T15:54:35Z
Modified
2026-09-15T18:26:42Z
Summary
usb: core: Add lock to usb_wakeup_notification()
Details

In the Linux kernel, the following vulnerability has been resolved:

usb: core: Add lock to usb_wakeup_notification()

Add a spin lock to usb_wakeup notification to prevent a race condition with dereferencing freed memory. This could be hit by the xHCI driver as it calls this function from an IRQ and could race with the hub_disconnect() function, which properly grabs this lock to protect the state of the device.

Database specific
{
    "cna_assigner":  "Linux",
    "osv_generated_from":  "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80830.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
4ee823b83bc9851743fab756c76b27d6a1e2472b
Fixed
a7a16167991c88016acef720927400404039d850
Fixed
975ef630393c07fcbebf94f4d97043161b77a6ce
Fixed
71cfda2fdf78041a01e9d94143baa79feabbdbf6
Fixed
04ab260407972e631c86f2bc576cd8e64d65b325
Fixed
bf2288583b4e072bdff17a233963619e4bc7a8b5
Fixed
d80b946804674069db7ce6657319a71cf8eeaa5a
Fixed
960ca456faf61824b178f47967340300b24183db
Fixed
7c48aa0c1e79116b8af4b988d16ee29b427d6491
Fixed
e263e18a9e7b1ff3e7301f0801c6ff87c31adfb6

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-80830.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.4.0
Fixed
5.10.269
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.220
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.187
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.156
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.108
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.49
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.13
Type
ECOSYSTEM
Events
Introduced
7.2.0
Fixed
7.2.3

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-80830.json"