epoll epoll_wait

  1. CVE-2026-31721: Linux USB HID gadget lifetime bug and the bind/unbind fix

    On May 1, 2026, kernel.org published CVE-2026-31721, a medium-severity Linux kernel vulnerability in the USB gadget HID function where rebinding a gadget could corrupt kernel list state after an epoll-registered /dev/hidg0 file descriptor survived the unbind-and-bind cycle. The bug is not a...