CVE-2026-43170

MEDIUM EPSS 2.3%
Published May 6, 20261mo ago · Modified Jun 17, 20261w ago
5.5 CVSS 3.1
Medium
Find Similar
Published May 6, 2026 1mo ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: gadget: Move vbus draw to workqueue context Currently dwc3_gadget_vbus_draw() can be called from atomic context, which in turn invokes power-supply-core APIs. And some these PMIC APIs have operations that may sleep, leading to kernel panic. Fix this by moving the vbus_draw into a workqueue context.

CVSS Details

Base Score
5.5
Exploitability
1.8
Impact
3.6
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
2.3% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Affected Products 4

VendorProductVersionRange
linuxlinux_kernel*≥5.13  –  <6.6.128
linuxlinux_kernel*≥6.7  –  <6.12.75
linuxlinux_kernel*≥6.13  –  <6.18.16
linuxlinux_kernel*≥6.19  –  <6.19.6

References 5

  • git.kernel.org https://git.kernel.org/stable/c/2333653ef854c2cc124077f71a8526f03bf6e06a
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/54aaa3b387c2f580a99dc86a9cc2eb6dfaf599a7
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/74a231e3d99d310497ab0ccb359539a6063b316a
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/76c1123ffccfaba95cf4ecc2a50f95504a522424
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a7a80c25b65112768eeba58a7af129d3c52a6d90
    Patch

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/2333653ef854c2cc124077f71a8526f03bf6e06a
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/54aaa3b387c2f580a99dc86a9cc2eb6dfaf599a7
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/74a231e3d99d310497ab0ccb359539a6063b316a
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/76c1123ffccfaba95cf4ecc2a50f95504a522424
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a7a80c25b65112768eeba58a7af129d3c52a6d90
    Patch