PT-2026-93541 · Linux · Linux Kernel

CVE-2026-89900

·

Published

2026-09-16

·

Updated

2026-09-24

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A memory leak occurs in the Consumer Electronics Control (CEC) core of the media subsystem. The issue stems from a missing call to the rc free device() function. Specifically, a previous change removed the implicit call to rc free device() from rc unregister device() but failed to remove a NULL assignment to the adap->rc variable. This prevents rc free device() from being called on an allocated remote control (rc) device, leading to a kmemleak (a kernel memory leak detection tool report) when a device, such as dw-hdmi, is unbound.
Recommendations Remove the assignment of adap->rc to NULL to allow the cec delete adapter() function to properly free the allocated rc device after the last user of the cec device exits.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-101120
CVE-2026-89900
OPENSUSE-SU-2026:11880-1

Affected Products

Linux Kernel