{"id":"CVE-2026-90330","published":"2026-09-17T17:17:31.487","lastModified":"2026-09-17T17:17:31.487","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nHID: logitech-hidpp: Fix FF device cleanup on init failure\n\nhidpp_ff_init() creates the input force-feedback device with\ninput_ff_create(), then allocates the HID++ FF private data,\neffect ID array, and workqueue.\n\nIf any of those allocations fail after input_ff_create() succeeds,\nthe function returns an error without destroying the FF device.\nAdd an unwind path that frees the private allocations made by\nhidpp_ff_init() and calls input_ff_destroy() for failures after\ninput_ff_create() succeeds.","cvssScore":null,"cvssSeverity":null,"cvssVector":null,"cwes":[],"vendors":[],"products":[],"references":[{"url":"https://git.kernel.org/stable/c/13378c9ac0a1bcdf49ba158e4199594aafb589cd","tags":[]},{"url":"https://git.kernel.org/stable/c/dd5be4d9ce2dfc4d4a4527ef7d31d21a78e3cdac","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}