CVE-2025-21838

usb: gadget: core: flush gadget workqueue after device removal

References

Notes

 carnil> Introduced in 5702f75375aa9 ("usb: gadget: udc-core: move sysfs_notify() to a
 carnil> workqueue"). Vulnerable versions: 3.12.

Bugs

Status

Branch Status
upstream released (6.14-rc3) [399a45e5237ca14037120b1b895bd38a3b4492ea]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.13-upstream-stable released (6.13.4) [97695b5a1b5467a4f91194db12160f56da445dfe]
6.12-upstream-stable released (6.12.16) [f894448f3904d7ad66fecef8f01fe0172629e091]
6.6-upstream-stable released (6.6.80) [859cb45aefa6de823b2fa7f229fe6d9562c9f3b7]
6.1-upstream-stable released (6.1.130) [e3bc1a9a67ce33a2e761e6e7b7c2afc6cb9b7266]
5.10-upstream-stable needed
sid released (6.12.16-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security released (6.1.133-1)
5.10-bullseye-security needed