Answer in brief
CVE-2026-80767 records a Unknown severity vulnerability in HID: sensor: custom: Fix use-after-free in enable_sensor. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=4a7de0519df5e8fb89cef6ee062330ffe4b50a4d <c2be74b0272b7f8f60739e7aaf0d36c0befe7136 || >=4a7de0519df5e8fb89cef6ee062330ffe4b50a4d <d7cbea1d342a16ec96d9eb3d7bd0ba2d4b2f2855 || >=4a7de0519df5e8fb89cef6ee062330ffe4b50a4d <d37ff4e3635c18af907f25712596f8ccec323751 || >=4a7de0519df5e8fb89cef6ee062330ffe4b50a4d <2ce90cfc6646a32100feabd7110ae0352aa01167 || >=4a7de0519df5e8fb89cef6ee062330ffe4b50a4d <244a1cb638370490ed74a8adb5cc3f1212602e32 || >=4a7de0519df5e8fb89cef6ee062330ffe4b50a4d <8406d4b69d48bc72fb6f8812a65a17a1f903440b || >=4a7de0519df5e8fb89cef6ee062330ffe4b50a4d <c0757f10610542d763bd0bf9bda455b78afeef0b || >=4a7de0519df5e8fb89cef6ee062330ffe4b50a4d <7bb79a3cf45e0805aef74457e19deb77e18cf196 || >=4a7de0519df5e8fb89cef6ee062330ffe4b50a4d <ad8fb82b04422f49530d2aa2753cc81d1c60102c | c2be74b0272b7f8f60739e7aaf0d36c0befe7136, d7cbea1d342a16ec96d9eb3d7bd0ba2d4b2f2855, d37ff4e3635c18af907f25712596f8ccec323751, 2ce90cfc6646a32100feabd7110ae0352aa01167, 244a1cb638370490ed74a8adb5cc3f1212602e32, 8406d4b69d48bc72fb6f8812a65a17a1f903440b, c0757f10610542d763bd0bf9bda455b78afeef0b, 7bb79a3cf45e0805aef74457e19deb77e18cf196, ad8fb82b04422f49530d2aa2753cc81d1c60102c |
| Linux/Linuxgeneric | 4.1 | Not reported |
Published upstream
Sep 4, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Sep 4, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Sep 4, 2026
In the Linux kernel, the following vulnerability has been resolved: HID: sensor: custom: Fix use-after-free in enable_sensor enable_sensor_store() can call set_power_report_state(), which dereferences sensor_inst->power_state and sensor_inst->report_state. These pointers refer to entries in sensor_inst->fields. Create the field attributes before exposing the enable_sensor sysfs attribute, so enable_sensor cannot be accessed before the state it depends on has been initialized. On remove, delete enable_sensor before freeing the field attributes, so a concurrent sysfs write cannot dereference freed memory through power_state or report_state.
Quoted source text, attributed separately from HOL analysis.