CVE-2025-68282 | Linux Kernel up to 6.1.158/6.6.118/6.12.60/6.17.10 usb_gadget_state_work use after free (Nessus ID 298680 / WID-SEC-2025-2868)
A vulnerability classified as critical has been found in Linux Kernel up to 6.1.158/6.6.118/6.12.60/6.17.10. This affects the function usb_gadget_state_work. The manipulation leads to use after free.
This vulnerability is traded as CVE-2025-68282. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.