Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 11 min 99 bronnen 1 kritiek 22 vandaag
CVE's Videos Dagbriefing

← Terug naar CVE-database

CVE-2026-45996

HIGH · 7.8 CVSS Gepubliceerd: CWE-416

Beschrijving

In the Linux kernel, the following vulnerability has been resolved:

spi: imx: fix use-after-free on unbind

The SPI subsystem frees the controller and any subsystem allocated
driver data as part of deregistration (unless the allocation is device
managed).

Take another reference before deregistering the controller so that the
driver data is not freed until the driver is done with it.

Vendors

Linux

Affected products

Linux Kernel

References