PT-2026-94996 · Linux · Linux Kernel

CVE-2026-93200

·

Published

2026-09-17

·

Updated

2026-09-24

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A use-after-free issue exists in the i3c master controller. Sysfs attribute callbacks dereference the master->this pointer; however, this pointer is freed within the i3c master detach free devs() function before the master device is released. This allows sysfs accesses to dereference a freed pointer. Additionally, on the error path in the i3c master set info() function, the master->this and bus.cur master variables must be reset to NULL before the allocated device is freed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-102198
CVE-2026-93200
OPENSUSE-SU-2026:11880-1

Affected Products

Linux Kernel