PT-2026-82954 · Linux · Linux Kernel

CVE-2026-80654

·

Published

2026-08-28

·

Updated

2026-08-28

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux Kernel (affected versions not specified)
Description A use after free issue exists in the Linux kernel within the xilinx soc component. The problem occurs during the device removal process when the mbox request channel byname() function is used to request a mailbox receive (rx) channel. Due to an incorrect condition check in the remove callback, the rx mailbox channel is not properly shut down or freed if rx chan is NULL. This allows the channel to continue receiving messages after the device has been removed, leading to memory corruption and resource leaks.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-98090
CVE-2026-80654

Affected Products

Linux Kernel