CVE-2026-64453 | Linux Kernel up to 6.18.38/7.1.3/7.2-rc2 usbio usbio_disconnect cli_list use after free
A vulnerability was found in Linux Kernel up to 6.18.38/7.1.3/7.2-rc2. It has been declared as very critical. This affects the function usbio_disconnect of the component usbio. Executing a manipulation of the argument cli_list can lead to use after free.
This vulnerability is tracked as CVE-2026-64453. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.