-

CVE-2026-90126

rtc: pcf8563: fix clock provider leak on unbind

In the Linux kernel, the following vulnerability has been resolved:

rtc: pcf8563: fix clock provider leak on unbind

pcf8563_clkout_register_clk() registers the CLKOUT clock provider with
of_clk_add_provider(), but nothing ever unwinds it: there is no
of_clk_del_provider() call and the driver has no remove callback. Each
of_clk_add_provider() allocates a struct of_clk_provider, takes a
reference on the OF node and adds an entry to the global of_clk_providers
list, none of which is released when the device is unbound. Every
bind/unbind (or module reload) therefore leaks a provider structure and
an of_node reference.

The clock itself is already device-managed (devm_clk_register()); only
the provider registration was not. Use devm_of_clk_add_hw_provider() so
the provider is removed automatically on unbind. Tie it to the parent
i2c device, whose OF node carries the #clock-cells and clock-output-names
properties (the RTC class device has no OF node of its own).
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version a39a6405d5f949bc651694028a55d74c514ef1f9
Version < 2b5622cf4ee218b6f98d31dbf3fbd44b9b6bd675
Status affected
Version a39a6405d5f949bc651694028a55d74c514ef1f9
Version < 36cb00c33bd83e7ce31b5a9f1f7c70db0cb7776c
Status affected
Version a39a6405d5f949bc651694028a55d74c514ef1f9
Version < 30b7c63af50fe1464e7582a37de1ca4bd030ecc1
Status affected
Version a39a6405d5f949bc651694028a55d74c514ef1f9
Version < 7afb8db47c4f107bce89cfe5115fb31ba7c94665
Status affected
Version a39a6405d5f949bc651694028a55d74c514ef1f9
Version < 97edf3fd9a46ea89a167966991c0449cfa07b36f
Status affected
Version a39a6405d5f949bc651694028a55d74c514ef1f9
Version < 08a59c28c2bdbcd655e99526c86a41dc83834283
Status affected
Version a39a6405d5f949bc651694028a55d74c514ef1f9
Version < 6218c0533a72235ec9c5f41b812c63d963bd4a3e
Status affected
Version a39a6405d5f949bc651694028a55d74c514ef1f9
Version < 9c48a53685040bb0de45a640b34055cbbfc69d4f
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 4.4
Status affected
Version 0
Version < 4.4
Status unaffected
Version <= 5.10.*
Version 5.10.270
Status unaffected
Version <= 5.15.*
Version 5.15.221
Status unaffected
Version <= 6.1.*
Version 6.1.188
Status unaffected
Version <= 6.6.*
Version 6.6.157
Status unaffected
Version <= 6.12.*
Version 6.12.110
Status unaffected
Version <= 6.18.*
Version 6.18.52
Status unaffected
Version <= 7.2.*
Version 7.2.6
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.21% 0.117
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/2b5622cf4ee218b6f98d31dbf3fbd44b9b6bd675
https://git.kernel.org/stable/c/36cb00c33bd83e7ce31b5a9f1f7c70db0cb7776c
https://git.kernel.org/stable/c/30b7c63af50fe1464e7582a37de1ca4bd030ecc1
https://git.kernel.org/stable/c/7afb8db47c4f107bce89cfe5115fb31ba7c94665
https://git.kernel.org/stable/c/97edf3fd9a46ea89a167966991c0449cfa07b36f
https://git.kernel.org/stable/c/08a59c28c2bdbcd655e99526c86a41dc83834283
https://git.kernel.org/stable/c/6218c0533a72235ec9c5f41b812c63d963bd4a3e
https://git.kernel.org/stable/c/9c48a53685040bb0de45a640b34055cbbfc69d4f