-

CVE-2026-92481

pinctrl: mediatek: free EINT resources on unbind

In the Linux kernel, the following vulnerability has been resolved:

pinctrl: mediatek: free EINT resources on unbind

mtk_eint_do_init() creates an IRQ domain, populates it with a mapping for
every EINT line and installs a chained handler on the parent interrupt,
but none of these are ever released. This was harmless while the drivers
were built-in, but now that they can be built as modules and
unbound/rmmod'd it leaves behind a dangling IRQ domain, interrupt mappings
whose chip data points at freed memory, and a chained handler that keeps
firing into that freed data.

The plain allocations in mtk_eint_do_init() already use the device-managed
devm_*() helpers, so tear the remaining resources down the same way:
register a devm action that detaches the chained handler, waits for any
in-flight handler to finish, disposes of the per-line mappings and removes
the IRQ domain. This mirrors the device-managed lifecycle adopted for the
GPIO chip and keeps the whole EINT setup self-cleaning on unbind.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version e46df235b4e605aa4e7609a27c118a1cccd4ff9a
Version < 23252bc1cd9a58a039c9b1ae77b22d2b33da48e9
Status affected
Version e46df235b4e605aa4e7609a27c118a1cccd4ff9a
Version < 903a7cdf63a81d3738594c5bd1b5955f58fda427
Status affected
Version e46df235b4e605aa4e7609a27c118a1cccd4ff9a
Version < 51552c8c60d3b1fecc062eab2d8cfeaa1cb339dd
Status affected
Version e46df235b4e605aa4e7609a27c118a1cccd4ff9a
Version < 7f6d898179ca4771ee602bdad4246c3952af83eb
Status affected
Version e46df235b4e605aa4e7609a27c118a1cccd4ff9a
Version < e06785cba7f86d72abd531058b1a82d6952a7346
Status affected
Version e46df235b4e605aa4e7609a27c118a1cccd4ff9a
Version < 88292b7103d260e3e606eb3bb2794060a5fde48e
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 4.18
Status affected
Version 0
Version < 4.18
Status unaffected
Version <= 6.1.*
Version 6.1.188
Status unaffected
Version <= 6.6.*
Version 6.6.157
Status unaffected
Version <= 6.12.*
Version 6.12.110
Status unaffected
Version <= 6.18.*
Version 6.18.52
Status unaffected
Version <= 7.2.*
Version 7.2.6
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.21% 0.11
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/23252bc1cd9a58a039c9b1ae77b22d2b33da48e9
https://git.kernel.org/stable/c/903a7cdf63a81d3738594c5bd1b5955f58fda427
https://git.kernel.org/stable/c/51552c8c60d3b1fecc062eab2d8cfeaa1cb339dd
https://git.kernel.org/stable/c/7f6d898179ca4771ee602bdad4246c3952af83eb
https://git.kernel.org/stable/c/e06785cba7f86d72abd531058b1a82d6952a7346
https://git.kernel.org/stable/c/88292b7103d260e3e606eb3bb2794060a5fde48e