← Volver al buscador de CVEs

CVE-2026-43264

Linux Kernel

Descripción

In the Linux kernel, the following vulnerability has been resolved: fbdev: of: display_timing: fix refcount leak in of_get_display_timings() of_parse_phandle() returns a device_node with refcount incremented, which is stored in -entry- and then copied to -native_mode-. When the error paths at lines 184 or 192 jump to -entryfail-, native_mode-s refcount is not decremented, causing a refcount leak. Fix this by changing the goto target from -entryfail- to -timingfail-, which properly calls of_node_put(native_mode) before cleanup.

CVSS 5.5EPSS 0.11399999999999999%Riesgo 0.56
Ver fuente
Publicación
2026-05-06 12:16:47
Versiones afectadas
unknown
Tipo
Core software
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Sistemas operativos
Linux