usb: gadget: f_midi: cancel pending IN work before freeing the midi object (CVE-2026-64584) | HOL Guard CVE