Description
In the Linux kernel, the following vulnerability has been resolved:

HID: logitech-hidpp: Fix FF device cleanup on init failure

hidpp_ff_init() creates the input force-feedback device with
input_ff_create(), then allocates the HID++ FF private data,
effect ID array, and workqueue.

If any of those allocations fail after input_ff_create() succeeds,
the function returns an error without destroying the FF device.
Add an unwind path that frees the private allocations made by
hidpp_ff_init() and calls input_ff_destroy() for failures after
input_ff_create() succeeds.
Published: 2026-09-17
Score: n/a
EPSS: < 1% Very Low
KEV: No
Impact: Resource Leak (Denial of Service)
Action: Patch Kernel
AI Analysis

Impact

The Linux kernel hidpp_ff_init function incorrectly fails to clean up allocated force‑feedback resources when initialization fails after the device has been created. This leaves a force‑feedback device and associated memory still allocated, leading to a resource leak that could be exploited by an attacker who repeatedly triggers the failure path to exhaust kernel memory or input subsystem resources, potentially causing a denial of service. The flaw is a classic resource‑management weakness rooted in improper cleanup code.

Affected Systems

The problem exists in all Linux kernel builds that include the HID++ force‑feedback driver before the fix was applied. Any Linux system that enumerates Logitech HID++ force‑feedback devices and runs a kernel prior to the commit referenced in the advisory is vulnerable. No specific version list is supplied, so the issue applies to all versions prior to the patch commit.

Risk and Exploitability

The EPSS score is below 1%, indicating a very low probability of exploitation. The vulnerability is not listed in the CISA KEV catalog, suggesting limited real‑world exploitation. The flaw requires the kernel to attempt to initialize an FF device that fails, which may or may not be controllable by an attacker depending on device behavior or malicious payloads. The impact is local but can lead to service disruption if repeated failures exhaust resources. No public exploits are known.

Generated by OpenCVE AI on September 19, 2026 at 14:18 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update to a Linux kernel version that includes the HID++ force‑feedback cleanup fix referenced in the advisory
  • Reboot the system to reload the kernel and apply the updated driver code
  • Monitor kernel logs and memory usage for indications of persistent FF device creation failures, and consider disabling or removing Logitech HID++ devices until the fix is in place

Generated by OpenCVE AI on September 19, 2026 at 14:18 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 19 Sep 2026 14:45:00 +0000

Type Values Removed Values Added
Weaknesses CWE-772
CWE-775

Thu, 17 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: HID: logitech-hidpp: Fix FF device cleanup on init failure hidpp_ff_init() creates the input force-feedback device with input_ff_create(), then allocates the HID++ FF private data, effect ID array, and workqueue. If any of those allocations fail after input_ff_create() succeeds, the function returns an error without destroying the FF device. Add an unwind path that frees the private allocations made by hidpp_ff_init() and calls input_ff_destroy() for failures after input_ff_create() succeeds.
Title HID: logitech-hidpp: Fix FF device cleanup on init failure
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-09-17T16:08:43.953Z

Reserved: 2026-09-11T19:38:34.803Z

Link: CVE-2026-90330

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-17T17:17:31.487

Modified: 2026-09-17T17:17:31.487

Link: CVE-2026-90330

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-19T14:30:07Z

Weaknesses
  • CWE-772

    Missing Release of Resource after Effective Lifetime

  • CWE-775

    Missing Release of File Descriptor or Handle after Effective Lifetime