[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2025-68287":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T14:53:31.930Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":11,"aliases":12,"duplicate_of":9,"upstream":13,"downstream":14,"duplicates":117,"related":118,"reserved_at":9,"published_at":134,"modified_at":135,"state":136,"summary":137,"references_raw":141,"kevs":172,"epss":173,"epss_history":176,"metrics":449,"affected":450},"CVE-2025-68287","In the Linux kernel, the following vulnerability has been resolved:\n\nusb: dwc3: Fix race condition between concurrent dwc3_remove_requests() call paths\n\nThis patch addresses a race condition caused by unsynchronized\nexecution of multiple call paths invoking `dwc3_remove_requests()`,\nleading to premature freeing of USB requests and subsequent crashes.\n\nThree distinct execution paths interact with `dwc3_remove_requests()`:\nPath 1:\nTriggered via `dwc3_gadget_reset_interrupt()` during USB reset\nhandling. The call stack includes:\n- `dwc3_ep0_reset_state()`\n- `dwc3_ep0_stall_and_restart()`\n- `dwc3_ep0_out_start()`\n- `dwc3_remove_requests()`\n- `dwc3_gadget_del_and_unmap_request()`\n\nPath 2:\nAlso initiated from `dwc3_gadget_reset_interrupt()`, but through\n`dwc3_stop_active_transfers()`. The call stack includes:\n- `dwc3_stop_active_transfers()`\n- `dwc3_remove_requests()`\n- `dwc3_gadget_del_and_unmap_request()`\n\nPath 3:\nOccurs independently during `adb root` execution, which triggers\nUSB function unbind and bind operations. The sequence includes:\n- `gserial_disconnect()`\n- `usb_ep_disable()`\n- `dwc3_gadget_ep_disable()`\n- `dwc3_remove_requests()` with `-ESHUTDOWN` status\n\nPath 3 operates asynchronously and lacks synchronization with Paths\n1 and 2. When Path 3 completes, it disables endpoints and frees 'out'\nrequests. If Paths 1 or 2 are still processing these requests,\naccessing freed memory leads to a crash due to use-after-free conditions.\n\nTo fix this added check for request completion and skip processing\nif already completed and added the request status for ep0 while queue.",null,[],[],[],[],[15,17,19,21,23,25,27,29,31,33,35,37,39,41,43,45,47,49,51,53,55,57,59,61,63,65,67,69,71,73,75,77,79,81,83,85,87,89,91,93,95,97,99,101,103,105,107,109,111,113,115],{"_key":16},"RHSA-2026:0489",{"_key":18},"RHSA-2026:0793",{"_key":20},"SUSE-SU-2026:0278-1",{"_key":22},"SUSE-SU-2026:0281-1",{"_key":24},"SUSE-SU-2026:0315-1",{"_key":26},"SUSE-SU-2026:20207-1",{"_key":28},"SUSE-SU-2026:20220-1",{"_key":30},"SUSE-SU-2026:20228-1",{"_key":32},"SUSE-SU-2026:20477-1",{"_key":34},"SUSE-SU-2026:20498-1",{"_key":36},"SUSE-SU-2026:0293-1",{"_key":38},"OPENSUSE-SU-2026:20145-1",{"_key":40},"SUSE-SU-2026:1078-1",{"_key":42},"SUSE-SU-2026:20845-1",{"_key":44},"SUSE-SU-2026:20876-1",{"_key":46},"MGASA-2026-0017",{"_key":48},"MGASA-2026-0018",{"_key":50},"RHSA-2026:0534",{"_key":52},"RHSA-2026:0535",{"_key":54},"DEBIAN-CVE-2025-68287",{"_key":56},"USN-8095-1",{"_key":58},"USN-8095-2",{"_key":60},"USN-8095-3",{"_key":62},"USN-8095-4",{"_key":64},"USN-8095-5",{"_key":66},"USN-8100-1",{"_key":68},"USN-8125-1",{"_key":70},"USN-8165-1",{"_key":72},"RHSA-2026:0537",{"_key":74},"RHSA-2026:0576",{"_key":76},"USN-8096-1",{"_key":78},"USN-8096-2",{"_key":80},"USN-8096-3",{"_key":82},"USN-8096-4",{"_key":84},"USN-8096-5",{"_key":86},"USN-8116-1",{"_key":88},"USN-8141-1",{"_key":90},"USN-8163-1",{"_key":92},"USN-8163-2",{"_key":94},"RHSA-2026:0453",{"_key":96},"USN-8126-1",{"_key":98},"USN-8243-1",{"_key":100},"RHSA-2026:0457",{"_key":102},"UBUNTU-CVE-2025-68287",{"_key":104},"USN-8094-1",{"_key":106},"USN-8094-2",{"_key":108},"USN-8094-3",{"_key":110},"USN-8094-4",{"_key":112},"USN-8094-5",{"_key":114},"USN-8152-1",{"_key":116},"USN-8261-1",[],[119,120,121,122,123,124,125,126,127,128,129,130,131,132,133],{"_key":20},{"_key":22},{"_key":24},{"_key":26},{"_key":28},{"_key":30},{"_key":32},{"_key":34},{"_key":36},{"_key":38},{"_key":40},{"_key":42},{"_key":44},{"_key":46},{"_key":48},"2025-12-16T15:06:08.711Z","2026-05-11T21:50:14.760Z","Deferred",{"cisa_kev":138,"cisa_ransomware":138,"cisa_vendor":9,"epss_severity":139,"epss_score":140,"severity":9,"severity_score":9,"severity_version":9,"severity_source":9,"severity_vector":9,"severity_status":136},false,"low",0.00076,[142,148,152,156,160,164,168],{"url":143,"sources":144,"tags":147},"https://git.kernel.org/stable/c/467add9db13219101f14b6cc5477998b4aaa5fe2",[145,146],"cve.org","nvd",[],{"url":149,"sources":150,"tags":151},"https://git.kernel.org/stable/c/67192e8cb7f941b5bba91e4bb290683576ce1607",[145,146],[],{"url":153,"sources":154,"tags":155},"https://git.kernel.org/stable/c/47de14d741cc4057046c9e2f33df1f7828254e6c",[145,146],[],{"url":157,"sources":158,"tags":159},"https://git.kernel.org/stable/c/afc0e34f161ce61ad351303c46eb57bd44b8b090",[145,146],[],{"url":161,"sources":162,"tags":163},"https://git.kernel.org/stable/c/7cfb62888eba292fa35cd9ddbd28ce595f60e139",[145,146],[],{"url":165,"sources":166,"tags":167},"https://git.kernel.org/stable/c/fa5eaf701e576880070b60922200557ae4aa54e1",[145,146],[],{"url":169,"sources":170,"tags":171},"https://git.kernel.org/stable/c/e4037689a366743c4233966f0e74bc455820d316",[145,146],[],[],{"date":174,"score":140,"percentile":175},"2026-06-04",0.22899,[177,181,184,187,190,193,197,200,203,206,209,212,215,218,221,223,226,229,232,234,237,240,243,246,248,251,254,256,259,262,265,268,272,276,279,282,285,288,291,294,297,300,303,306,309,312,315,318,321,324,327,330,333,336,339,343,346,349,352,355,358,361,364,367,370,373,376,379,383,386,389,392,395,398,401,404,407,410,413,416,419,422,425,428,431,434,437,440,443,446],{"date":178,"score":179,"percentile":180},"2025-12-17",0.00024,0.0566,{"date":182,"score":179,"percentile":183},"2025-12-18",0.05697,{"date":185,"score":179,"percentile":186},"2025-12-19",0.05689,{"date":188,"score":179,"percentile":189},"2025-12-20",0.05686,{"date":191,"score":179,"percentile":192},"2025-12-21",0.05674,{"date":194,"score":195,"percentile":196},"2025-12-22",0.00031,0.08399,{"date":198,"score":195,"percentile":199},"2025-12-23",0.0841,{"date":201,"score":195,"percentile":202},"2025-12-24",0.08422,{"date":204,"score":195,"percentile":205},"2025-12-25",0.08501,{"date":207,"score":195,"percentile":208},"2025-12-26",0.08503,{"date":210,"score":195,"percentile":211},"2025-12-27",0.08493,{"date":213,"score":195,"percentile":214},"2025-12-28",0.08509,{"date":216,"score":195,"percentile":217},"2025-12-29",0.08489,{"date":219,"score":195,"percentile":220},"2025-12-30",0.08451,{"date":222,"score":195,"percentile":208},"2025-12-31",{"date":224,"score":195,"percentile":225},"2026-01-01",0.08564,{"date":227,"score":195,"percentile":228},"2026-01-02",0.08562,{"date":230,"score":195,"percentile":231},"2026-01-03",0.08557,{"date":233,"score":195,"percentile":211},"2026-01-04",{"date":235,"score":195,"percentile":236},"2026-01-05",0.08442,{"date":238,"score":195,"percentile":239},"2026-01-06",0.08427,{"date":241,"score":195,"percentile":242},"2026-01-07",0.08466,{"date":244,"score":195,"percentile":245},"2026-01-08",0.0854,{"date":247,"score":195,"percentile":231},"2026-01-09",{"date":249,"score":195,"percentile":250},"2026-01-10",0.08567,{"date":252,"score":195,"percentile":253},"2026-01-11",0.08518,{"date":255,"score":195,"percentile":217},"2026-01-12",{"date":257,"score":195,"percentile":258},"2026-01-13",0.08457,{"date":260,"score":195,"percentile":261},"2026-01-14",0.0849,{"date":263,"score":195,"percentile":264},"2026-01-15",0.08485,{"date":266,"score":195,"percentile":267},"2026-01-16",0.08508,{"date":269,"score":270,"percentile":271},"2026-01-17",0.00034,0.09587,{"date":273,"score":274,"percentile":275},"2026-01-18",0.0008,0.23981,{"date":277,"score":274,"percentile":278},"2026-01-19",0.23934,{"date":280,"score":274,"percentile":281},"2026-01-20",0.23915,{"date":283,"score":274,"percentile":284},"2026-01-21",0.23859,{"date":286,"score":274,"percentile":287},"2026-01-22",0.23843,{"date":289,"score":274,"percentile":290},"2026-01-23",0.23929,{"date":292,"score":274,"percentile":293},"2026-01-24",0.23939,{"date":295,"score":274,"percentile":296},"2026-01-25",0.23855,{"date":298,"score":274,"percentile":299},"2026-01-26",0.23755,{"date":301,"score":274,"percentile":302},"2026-01-27",0.23745,{"date":304,"score":274,"percentile":305},"2026-01-28",0.23744,{"date":307,"score":274,"percentile":308},"2026-01-29",0.23698,{"date":310,"score":274,"percentile":311},"2026-01-30",0.23695,{"date":313,"score":274,"percentile":314},"2026-01-31",0.23688,{"date":316,"score":274,"percentile":317},"2026-02-01",0.23727,{"date":319,"score":274,"percentile":320},"2026-02-02",0.23678,{"date":322,"score":274,"percentile":323},"2026-02-03",0.23656,{"date":325,"score":274,"percentile":326},"2026-02-04",0.23603,{"date":328,"score":274,"percentile":329},"2026-02-05",0.23638,{"date":331,"score":274,"percentile":332},"2026-02-06",0.23651,{"date":334,"score":274,"percentile":335},"2026-02-07",0.23665,{"date":337,"score":274,"percentile":338},"2026-02-08",0.23634,{"date":340,"score":341,"percentile":342},"2026-02-09",0.00066,0.20528,{"date":344,"score":341,"percentile":345},"2026-02-10",0.20468,{"date":347,"score":341,"percentile":348},"2026-02-11",0.20463,{"date":350,"score":341,"percentile":351},"2026-02-12",0.20508,{"date":353,"score":341,"percentile":354},"2026-02-13",0.20498,{"date":356,"score":341,"percentile":357},"2026-02-14",0.20473,{"date":359,"score":341,"percentile":360},"2026-02-15",0.20453,{"date":362,"score":341,"percentile":363},"2026-02-16",0.20418,{"date":365,"score":341,"percentile":366},"2026-02-17",0.20386,{"date":368,"score":341,"percentile":369},"2026-02-18",0.20483,{"date":371,"score":341,"percentile":372},"2026-02-19",0.20537,{"date":374,"score":341,"percentile":375},"2026-02-20",0.20551,{"date":377,"score":341,"percentile":378},"2026-02-21",0.20604,{"date":380,"score":381,"percentile":382},"2026-02-22",0.00069,0.21283,{"date":384,"score":381,"percentile":385},"2026-02-23",0.21247,{"date":387,"score":381,"percentile":388},"2026-02-24",0.21206,{"date":390,"score":381,"percentile":391},"2026-02-25",0.21193,{"date":393,"score":381,"percentile":394},"2026-02-26",0.21203,{"date":396,"score":381,"percentile":397},"2026-02-27",0.21224,{"date":399,"score":381,"percentile":400},"2026-02-28",0.21216,{"date":402,"score":381,"percentile":403},"2026-03-01",0.21256,{"date":405,"score":381,"percentile":406},"2026-03-02",0.21219,{"date":408,"score":381,"percentile":409},"2026-03-03",0.2117,{"date":411,"score":381,"percentile":412},"2026-03-04",0.21069,{"date":414,"score":381,"percentile":415},"2026-03-05",0.21144,{"date":417,"score":381,"percentile":418},"2026-03-06",0.21143,{"date":420,"score":381,"percentile":421},"2026-03-07",0.21129,{"date":423,"score":381,"percentile":424},"2026-03-08",0.21096,{"date":426,"score":381,"percentile":427},"2026-03-09",0.21058,{"date":429,"score":381,"percentile":430},"2026-03-10",0.21039,{"date":432,"score":381,"percentile":433},"2026-03-11",0.21023,{"date":435,"score":381,"percentile":436},"2026-03-12",0.21081,{"date":438,"score":381,"percentile":439},"2026-03-13",0.21121,{"date":441,"score":381,"percentile":442},"2026-03-14",0.21136,{"date":444,"score":381,"percentile":445},"2026-03-15",0.2107,{"date":447,"score":381,"percentile":448},"2026-03-16",0.21064,[],[451],{"ecosystem":9,"name":452,"vendor":453,"product":453,"cpe_part":454,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":455},"Linux","linux","a",[456,463,466,469,472,475,478,481],{"version":457,"is_range":458,"range_type":145,"version_start":459,"version_start_type":460,"version_end":461,"version_end_type":462,"fixed_in":9},">= 72246da40f3719af3bfd104a2365b32537c27d83, \u003C 467add9db13219101f14b6cc5477998b4aaa5fe2",true,"72246da40f3719af3bfd104a2365b32537c27d83","including","467add9db13219101f14b6cc5477998b4aaa5fe2","excluding",{"version":464,"is_range":458,"range_type":145,"version_start":459,"version_start_type":460,"version_end":465,"version_end_type":462,"fixed_in":9},">= 72246da40f3719af3bfd104a2365b32537c27d83, \u003C 67192e8cb7f941b5bba91e4bb290683576ce1607","67192e8cb7f941b5bba91e4bb290683576ce1607",{"version":467,"is_range":458,"range_type":145,"version_start":459,"version_start_type":460,"version_end":468,"version_end_type":462,"fixed_in":9},">= 72246da40f3719af3bfd104a2365b32537c27d83, \u003C 47de14d741cc4057046c9e2f33df1f7828254e6c","47de14d741cc4057046c9e2f33df1f7828254e6c",{"version":470,"is_range":458,"range_type":145,"version_start":459,"version_start_type":460,"version_end":471,"version_end_type":462,"fixed_in":9},">= 72246da40f3719af3bfd104a2365b32537c27d83, \u003C afc0e34f161ce61ad351303c46eb57bd44b8b090","afc0e34f161ce61ad351303c46eb57bd44b8b090",{"version":473,"is_range":458,"range_type":145,"version_start":459,"version_start_type":460,"version_end":474,"version_end_type":462,"fixed_in":9},">= 72246da40f3719af3bfd104a2365b32537c27d83, \u003C 7cfb62888eba292fa35cd9ddbd28ce595f60e139","7cfb62888eba292fa35cd9ddbd28ce595f60e139",{"version":476,"is_range":458,"range_type":145,"version_start":459,"version_start_type":460,"version_end":477,"version_end_type":462,"fixed_in":9},">= 72246da40f3719af3bfd104a2365b32537c27d83, \u003C fa5eaf701e576880070b60922200557ae4aa54e1","fa5eaf701e576880070b60922200557ae4aa54e1",{"version":479,"is_range":458,"range_type":145,"version_start":459,"version_start_type":460,"version_end":480,"version_end_type":462,"fixed_in":9},">= 72246da40f3719af3bfd104a2365b32537c27d83, \u003C e4037689a366743c4233966f0e74bc455820d316","e4037689a366743c4233966f0e74bc455820d316",{"version":482,"is_range":138,"range_type":145,"version_start":482,"version_start_type":460,"version_end":482,"version_end_type":460,"fixed_in":9},"3.2"]