PT-2026-98663 · Linux · Linux Kernel
CVE-2026-98000
·
Published
2026-09-25
·
Updated
2026-10-07
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
A Use-After-Free (UAF) issue exists in the
pec store() function. The problem occurs when a guard(mutex)(&hwdev->lock) is acquired and a chip write operation returns an error other than -EOPNOTSUPP. In this scenario, the code executes a jump to a label that calls put device(hdev), which may free the device if the final reference is dropped. Subsequently, the guard cleanup function attempts to unlock the mutex of the already freed device.Recommendations
Replace the use of
guard() with scoped guard() within the pec store() function to prevent the Use-After-Free condition.Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel