CVE-2026-68087 PUBLISHED

HID: wacom: use GFP_ATOMIC in wacom_wac_queue_flush()

Assigner: Linux
Reserved: 30.07.2026 Published: 10.08.2026 Updated: 10.08.2026

In the Linux kernel, the following vulnerability has been resolved:

HID: wacom: use GFP_ATOMIC in wacom_wac_queue_flush()

wacom_wac_queue_flush() is called via the .raw_event callback (wacom_raw_event → wacom_wac_pen_serial_enforce → wacom_wac_queue_flush). For USB HID devices, this callback is invoked from hid_irq_in(), which is a URB completion handler running in atomic context. Using GFP_KERNEL in this path can sleep, leading to a "scheduling while atomic" bug.

Use GFP_ATOMIC instead. The existing code already handles allocation failure by skipping the fifo entry and continuing.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 5e013ad206895e72d7da41bc1ae89d8cb499c3aa to bbe1e55629bfaabd4b2e8125b48dd3503d74ac8b (excl.)
  • affected from 5e013ad206895e72d7da41bc1ae89d8cb499c3aa to 27c4dad1b7917b747bf080792a527997e3147c69 (excl.)
  • affected from 5e013ad206895e72d7da41bc1ae89d8cb499c3aa to 55f1ad573e34abf9a0443c34bc5a63d74edba7d7 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 6.15 is affected
  • unaffected from 0 to 6.15 (excl.)
  • unaffected from 6.18.39 to 6.18.* (incl.)
  • unaffected from 7.1.4 to 7.1.* (incl.)
  • unaffected from 7.2-rc1 to * (incl.)

References