Improper resource shutdown or release in Linux kernel - CVE-2026-93089
Published: September 18, 2026
Vulnerability details
The vulnerability allows a local privileged user to cause resource leaks.
The vulnerability exists due to improper resource shutdown or release in the SCMI transport channel setup error-handling path when an IDR insertion fails after transport channel setup succeeds. A local privileged user can initiate transport channel setup to cause resource leaks.
Affected software
How to mitigate CVE-2026-93089
External References
- https://git.kernel.org/stable/c/ae7980c9af698d0a7e6790d49249abc71f0fc304
- https://git.kernel.org/stable/c/d72e7e5f24687c0490aabf317653caffe0447aeb
- https://git.kernel.org/stable/c/d7c60c0fe2bd452b56fe07947842d64da61b7290
- https://git.kernel.org/stable/c/de0a4c103740cf54cf77370d47e03c9aa51aa5ee
- https://git.kernel.org/stable/c/fbaebd380caa4e1cec9306ca00231da6518a123f