iso_stream_schedule of the component USB. Executing a manipulation of the argument hcpriv can lead to memory leak.
This vulnerability is registered as CVE-2026-64348. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.
Intelligence View
⚡ tsecurity.de Intelligence
CVE-2026-64348 | Linux Kernel up to 7.2-rc2 USB iso_stream_schedule hcpriv memory leak (Nessus ID 329985)
A vulnerability, which was classified as very critical, was found in Linux Kernel up to 7.2-rc2. Affected is the function
SOCIAL SHARE CARD GENERATOR