CVE-2026-63927

Updated on 19 Jul 2026

Severity

7.8 High severity

Details

CVSS score
7.8

Overview

About vulnerability

In the Linux kernel, the following vulnerability has been resolved:

usb: dwc2: Fix use after free in debug code

We’re not allowed to dereference “urb” after calling usb_hcd_giveback_urb() so save the urb->status ahead of time.

Details

KernelCare state

Live-patch status from KernelCare for each operating system.

Operating system Status Covered kernels
Debian 12 Planned