CVE-2026-89627
Received Received - Intake

Memory Leak in Linux Kernel HID roccat Driver

Vulnerability report for CVE-2026-89627, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-11

Last updated on: 2026-09-14

Assigner: kernel.org

Description

In the Linux kernel, the following vulnerability has been resolved: HID: roccat: free buffered reports when destroying device roccat_report_event() duplicates each report with kmemdup() and stores the allocation in a circular-buffer slot. The allocation is released only when that slot is reused. The device destruction paths free struct roccat_device without releasing reports still stored in cbuf[]. This makes those allocations unreachable and leaks up to ROCCAT_CBUF_SIZE report buffers per device. Add a small destructor that frees every buffered report before freeing the device, and use it in both paths that can destroy a registered device.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-11
Last Modified
2026-09-14
Generated
2026-10-02
AI Q&A
2026-09-12
EPSS Evaluated
2026-10-01
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
roccat roccat_device *

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability is in the Linux kernel's HID driver for Roccat devices. It involves a memory leak where report buffers are duplicated and stored in a circular buffer but not properly freed when the device is destroyed. This causes memory leaks of up to ROCCAT_CBUF_SIZE report buffers per device.

Detection Guidance

This vulnerability is specific to the Linux kernel's HID roccat driver and does not have network exposure. Detection involves checking kernel logs for memory leaks related to roccat devices or inspecting kernel memory for unreleased report buffers.

Impact Analysis

This vulnerability can lead to memory leaks, which may cause system performance degradation or instability over time due to unreleased memory allocations. It does not directly impact security but can affect system reliability.

Compliance Impact

This vulnerability causes memory leaks in the Linux kernel's HID subsystem for ROCCAT devices. While it does not directly impact data privacy or security, memory leaks could lead to resource exhaustion, potentially affecting system stability and availability. Compliance with GDPR or HIPAA is not directly affected unless system failures disrupt data processing or storage operations.

Mitigation Strategies

Update the Linux kernel to a patched version that includes the fix for this vulnerability. Monitor system logs for memory leaks related to roccat devices and ensure no critical applications rely on the affected driver.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-89627. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart