{"id":"CVE-2026-97508","published":"2026-09-24T17:17:28.650","lastModified":"2026-09-28T06:16:36.773","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nthunderbolt: Set tb->root_switch to NULL when domain is stopped\n\nSimilarly what we do with the firmware connection manager. This makes\ntb_xdp_handle_request() return error to the remote host. However, we\nneed to make sure we keep the uuid alive so that we can reply until the\nwhole domain is released.","cvssScore":7.5,"cvssSeverity":"HIGH","cvssVector":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","cwes":[],"vendors":[],"products":[],"references":[{"url":"https://git.kernel.org/stable/c/99f019d2e9eb79adc485fef8aa8ada2cd0c843e9","tags":[]},{"url":"https://git.kernel.org/stable/c/e56249d8a68e712f3b60e1f3fdbb5b4fea146468","tags":[]},{"url":"https://git.kernel.org/stable/c/f06e9fbae78a51832211b4495a19412c7d49ecb4","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}