CVE-2026-43488 Details
Description
In the Linux kernel, the following vulnerability has been resolved: usb: xhci: Prevent interrupt storm on host controller error (HCE) The xHCI controller reports a Host Controller Error (HCE) in UAS Storage Device plug/unplug scenarios on Android devices. HCE is checked in xhci_irq() function and causes an interrupt storm (since the interrupt isn’t cleared), leading to severe system-level faults. When the xHC controller reports HCE in the interrupt handler, the driver only logs a warning and assumes xHC activity will stop as stated in xHCI specification. An interrupt storm does however continue on some hosts even after HCE, and only ceases after manually disabling xHC interrupt and stopping the controller by calling xhci_halt(). Add xhci_halt() to xhci_irq() function where STS_HCE status is checked, mirroring the existing error handling pattern used for STS_FATAL errors. This only fixes the interrupt storm. Proper HCE recovery requires resetting and re-initializing the xHC.
A vulnerability in the Linux kernel's USB xHCI controller can cause an interrupt storm when a Host Controller Error (HCE) is reported during UAS Storage Device plug and unplug scenarios on Android devices. The HCE interrupts are not cleared, leading to severe system-level faults. Although the driver logs a warning and expects xHC activity to cease, the interrupt storm continues on some hosts until the xHC interrupt is manually disabled and the controller is stopped. This vulnerability has been addressed by adding a call to 'xhci_halt()' in the interrupt handler where HCE is detected, which stops the interrupt storm. However, proper recovery from HCE requires resetting and re-initializing the xHC controller.
Users can upgrade to the patched version of the Linux kernel available in the Linux kernel stable tree. Instructions for downloading the patched version can be found in the 'download' section of the commit details.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://git.kernel.org/stable/c/09ff0099c6cf148ff1f7053b5b6c84beb1c2ef8d | kernel.org | Patch |
| https://git.kernel.org/stable/c/6f91f3f087194c114d6d8ea4591b850bb00672f8 | kernel.org | Patch |
| https://git.kernel.org/stable/c/b2dd9abf8c06cfcbcf242321fd54ae51a4807705 | kernel.org | Patch |
| https://git.kernel.org/stable/c/cd41e0d1df8fcf5eae294657da52b50d1ce03246 | kernel.org | Patch |
| https://git.kernel.org/stable/c/d6d5febd12452b7fd951fdd15c3ec262f01901a4 | kernel.org | Patch |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| NVD-CWE-noinfo | Insufficient Information to Classify Weakness | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| linux linux kernel | >= 6.2, < 6.6.130 >= 6.7, < 6.12.78 >= 6.13, < 6.18.19 >= 6.19, < 6.19.9 7.0 rc1 7.0 rc2 7.0 rc3 |
CPE
Remediation
| |
Change History
3 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 26, 2026 | Initial Analysis | [email protected] |
| Jun 17, 2026 | CVE Modified | kernel.org |
| May 13, 2026 | New CVE Received | kernel.org |