CVE-2026-23221

HIGH EPSS 2.3%
Published Feb 18, 20264mo ago · Modified Jun 17, 20261w ago
7.8 CVSS 3.1
High
Find Similar
Published Feb 18, 2026 4mo ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: bus: fsl-mc: fix use-after-free in driver_override_show() The driver_override_show() function reads the driver_override string without holding the device_lock. However, driver_override_store() uses driver_set_override(), which modifies and frees the string while holding the device_lock. This can result in a concurrent use-after-free if the string is freed by the store function while being read by the show function. Fix this by holding the device_lock around the read operation.

CVSS Details

Base Score
7.8
Exploitability
1.8
Impact
5.9
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality High
Integrity High
Availability High

Threat Intelligence

EPSS Exploit Probability
2.3% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-416 Use After Free Memory Safety

Affected Products 6

VendorProductVersionRange
linuxlinux_kernel*≥5.10  –  <5.15.201
linuxlinux_kernel*≥5.16  –  <6.1.164
linuxlinux_kernel*≥6.2  –  <6.6.127
linuxlinux_kernel*≥6.7  –  <6.12.74
linuxlinux_kernel*≥6.13  –  <6.18.11
linuxlinux_kernel*≥6.19  –  <6.19.1

References 7

  • git.kernel.org https://git.kernel.org/stable/c/148891e95014b5dc5878acefa57f1940c281c431
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/1d6bd6183e723a7b256ff34bbb5b498b5f4f2ec0
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a2ae33e1c6361e960a4d00f7cf75d880b54f9528
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/b1983840287303e0dfb401b1b6cecc5ea7471e90
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c424e72cfa67e7e1477035058a8a659f2c0ea637
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c71dfb7833db7af652ee8f65011f14c97c47405d
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/dd8ba8c0c3f3916d4ee1e3a09da9cd5caff5d227
    Patch

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/148891e95014b5dc5878acefa57f1940c281c431
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/1d6bd6183e723a7b256ff34bbb5b498b5f4f2ec0
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a2ae33e1c6361e960a4d00f7cf75d880b54f9528
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/b1983840287303e0dfb401b1b6cecc5ea7471e90
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c424e72cfa67e7e1477035058a8a659f2c0ea637
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c71dfb7833db7af652ee8f65011f14c97c47405d
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/dd8ba8c0c3f3916d4ee1e3a09da9cd5caff5d227
    Patch