CVE-2026-64349 PUBLISHED

usb: dwc3: fix dwc3_readl() and dwc3_writel() calls in dwc3_ulpi_setup()

Assigner: Linux
Reserved: 19.07.2026 Published: 25.07.2026 Updated: 25.07.2026

In the Linux kernel, the following vulnerability has been resolved:

usb: dwc3: fix dwc3_readl() and dwc3_writel() calls in dwc3_ulpi_setup()

The dwc3_ulpi_setup() calls the register read and write calls with dwc3->regs when both these calls take the dwc3 structure directly.

Chnage these two calls to fix the following sparse warning, and possibly a nasty bug in the dwc3_ulpi_setup() code:

drivers/usb/dwc3/core.c:796:45: warning: incorrect type in argument 1 (different address spaces) drivers/usb/dwc3/core.c:796:45: expected struct dwc3 dwc drivers/usb/dwc3/core.c:796:45: got void [noderef] __iomem regs drivers/usb/dwc3/core.c:798:40: warning: incorrect type in argument 1 (different address spaces) drivers/usb/dwc3/core.c:798:40: expected struct dwc3 dwc drivers/usb/dwc3/core.c:798:40: got void [noderef] __iomem regs

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 476ee6389120e1900290b46081b3a12b54e05672 to 41a4e80d5af04855e68ac88f5e2cd07fa67287f8 (excl.)
  • affected from 9accc68b1cf0a2b220f51d53641128bb32598070 to 4349e487a1149ff33b65d53427b8aca57f2e4578 (excl.)
  • affected from 9accc68b1cf0a2b220f51d53641128bb32598070 to e0f844d9d74200d311c6438a0f04270834ba5365 (excl.)
  • affected from 6.18.32 to 6.18.40 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 7.0 is affected
  • unaffected from 0 to 7.0 (excl.)
  • unaffected from 6.18.40 to 6.18.* (incl.)
  • unaffected from 7.1.4 to 7.1.* (incl.)
  • unaffected from 7.2-rc3 to * (incl.)

References