Double free of the USB host configuration descriptor when device enumeration fails (CVE-2026-17050) | HOL Guard CVE