Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-68091— HID: wacom: stop hardware after post-start probe failures

CVSS 8.8 · High EPSS 0.18% · P7

Affected Version Matrix 28

VendorProductVersion RangeStatus
LinuxLinuxf304eb483393f135ab479d02da6f5dc7d9b51cd6< 5a7ca028facf04921b2c1c2e4d1ee7f282510555affected
853307924a9003b3142b5253b1caa6625fbad9fc< 3e6473a4f0596182acdda5219b4bebfbee76514faffected
e5c6c8ef3e4d3a88407404daafbf2c6be62f2185< 46d8b8c85ae0589fb85746a64e8908160e52aac3affected
fc41101a94b11cd0d5ad8e213b2b6965f248d653< 1a1ebdcb56ae58a0ee2c54dd15d75121e30424e3affected
c1d6708bf0d3dd976460d435373cf5abf21ce258< 75eb2173b63ab41c24d80cd641af18f3c117a267affected
c1d6708bf0d3dd976460d435373cf5abf21ce258< 416095e9a6037b4b39fcadd0d2bd77a8852211ecaffected
c1d6708bf0d3dd976460d435373cf5abf21ce258< e2cc711a9df37f359159b21db56cea9c21f58a9caffected
c1d6708bf0d3dd976460d435373cf5abf21ce258< ec2612b8ad9e642596db011dd8b6568ef1edeaa1affected
… +20 more rows
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2026-68091

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
HID: wacom: stop hardware after post-start probe failures
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: HID: wacom: stop hardware after post-start probe failures wacom_parse_and_register() starts HID hardware before registering inputs and initializing pad LEDs/remotes. Those later steps can fail, but their error paths currently release Wacom resources without stopping the HID hardware. Route post-hid_hw_start() failures through hid_hw_stop() before releasing driver resources. This issue was identified during our ongoing static-analysis research while reviewing kernel code.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会开源的一个操作系统内核。 Linux kernel存在安全漏洞,该漏洞源于wacom_parse_and_register()函数在注册输入和初始化pad LED/remotes之前启动HID硬件,后续步骤失败时错误路径未停止HID硬件就释放Wacom资源,可能导致硬件资源未正确释放。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux f304eb483393f135ab479d02da6f5dc7d9b51cd6 ~ 5a7ca028facf04921b2c1c2e4d1ee7f282510555 -
LinuxLinux 6.8 -

II. Public POCs for CVE-2026-68091

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-68091

登录查看更多情报信息。

Patches & Fixes for CVE-2026-68091 (6)

Same Patch Batch · Linux · 2026-08-10 · 345 CVEs total

CVE-2026-681549.8 CRITICALlibceph: reject zero bucket types in crush_decode
CVE-2026-683819.8 CRITICALksmbd: pin conn during async oplock break notification
CVE-2026-683859.8 CRITICALs390/checksum: Fix csum_partial() without vector facility
CVE-2026-683889.8 CRITICALsmb/client: handle overlapping allocated ranges in fallocate
CVE-2026-681709.8 CRITICALmptcp: fix stale skb->sk reference on subflow close
CVE-2026-681619.8 CRITICALsctp: close UDP tunnel sockets during netns teardown
CVE-2026-681179.8 CRITICALtipc: clear sock->sk on the failed-insert path in tipc_sk_create()
CVE-2026-681609.8 CRITICALceph: fix pre-auth out-of-bounds read on snaptrace in ceph_handle_caps()
CVE-2026-681599.8 CRITICALlibceph: bound pg_{temp,upmap,upmap_items} length to CEPH_PG_MAX_SIZE
CVE-2026-681589.8 CRITICALlibceph: Fix multiplication overflow in decode_new_up_state_weight()
CVE-2026-681569.8 CRITICALlibceph: refresh auth->authorizer_buf{,_len} after authorizer update
CVE-2026-681379.8 CRITICALnet/x25: fix use-after-free in x25_kill_by_neigh()
CVE-2026-681369.8 CRITICALnet: gro: fix double aggregation of flush-marked skbs
CVE-2026-683029.8 CRITICALamt: re-read skb header pointers after every pull
CVE-2026-683009.8 CRITICALsctp: auth: verify auth requirement when auth_chunk is NULL
CVE-2026-684269.8 CRITICALxfrm: fix stale skb->prev after async crypto steals a GSO segment
CVE-2026-681279.8 CRITICALila: reload IPv6 header after pskb_may_pull in checksum adjust
CVE-2026-681239.8 CRITICALopenvswitch: fix GSO userspace truncation underflow
CVE-2026-681449.8 CRITICALphonet: pep: fix use-after-free in pep_get_sb()
CVE-2026-681249.6 CRITICALmctp: serial: handle zero-length frames to prevent rx buffer overflow

Showing top 20 of 345 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2026-68091

No comments yet


Leave a comment