CVE-2026-46009

MEDIUM EPSS 2.4%
Published May 27, 20261mo ago · Modified Jun 17, 20261w ago
5.5 CVSS 3.1
Medium
Find Similar
Published May 27, 2026 1mo ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: pci-epf-ntb: Remove duplicate resource teardown epf_ntb_epc_destroy() duplicates the teardown that the caller is supposed to do later. This leads to an oops when .allow_link fails or when .drop_link is performed. Remove the helper. Also drop pci_epc_put(). EPC device refcounting is tied to configfs EPC group lifetime, and pci_epc_put() in the .drop_link path is sufficient.

CVSS Details

Base Score
5.5
Exploitability
1.8
Impact
3.6
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
2.4% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Affected Products 6

VendorProductVersionRange
linuxlinux_kernel*≥5.12  –  <5.15.209
linuxlinux_kernel*≥5.16  –  <6.1.175
linuxlinux_kernel*≥6.2  –  <6.6.140
linuxlinux_kernel*≥6.7  –  <6.12.86
linuxlinux_kernel*≥6.13  –  <6.18.27
linuxlinux_kernel*≥6.19  –  <7.0.4

References 7

  • git.kernel.org https://git.kernel.org/stable/c/3446beddba450c8d6f9aca2f028712ac527fead3
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/65fc57c8b8f0b31be62be291cb1bb01755cec85d
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/72099f015d3c77bf2eb703d1aab113bd7a60915a
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/756ca5e7ed22d9045bb4de4c981f9149278d5cd3
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c3029721b84f59e790285ad27544ed5d3cb0f2a6
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c72f6a7ea638f95c486a5cfd86e567b646027687
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e813c95e4c8edd31599081e6356e20ada30e266d
    Patch

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/3446beddba450c8d6f9aca2f028712ac527fead3
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/65fc57c8b8f0b31be62be291cb1bb01755cec85d
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/72099f015d3c77bf2eb703d1aab113bd7a60915a
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/756ca5e7ed22d9045bb4de4c981f9149278d5cd3
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c3029721b84f59e790285ad27544ed5d3cb0f2a6
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/c72f6a7ea638f95c486a5cfd86e567b646027687
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e813c95e4c8edd31599081e6356e20ada30e266d
    Patch