cbcvebase.
CVE-2026-23221
published 2026-02-18

CVE-2026-23221: In the Linux kernel, the following vulnerability has been resolved: bus: fsl-mc: fix use-after-free in driver_override_show() The driver_override_show()…

PriorityP340high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.12%
2.3th percentile
In the Linux kernel, the following vulnerability has been resolved: bus: fsl-mc: fix use-after-free in driver_override_show() The driver_override_show() function reads the driver_override string without holding the device_lock. However, driver_override_store() uses driver_set_override(), which modifies and frees the string while holding the device_lock. This can result in a concurrent use-after-free if the string is freed by the store function while being read by the show function. Fix this by holding the device_lock around the read operation.

Affected

48 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.164-1 (bookworm)linux 6.1.164-1 (bookworm)
debianlinux-6.1< linux 6.1.164-1 (bookworm)linux 6.1.164-1 (bookworm)
linuxlinux
linuxlinux>= 1f86a00c1159fd77e66b1bd6ff1a183f4d46f34d < c71dfb7833db7af652ee8f65011f14c97c47405dc71dfb7833db7af652ee8f65011f14c97c47405d
linuxlinux>= 1f86a00c1159fd77e66b1bd6ff1a183f4d46f34d < c424e72cfa67e7e1477035058a8a659f2c0ea637c424e72cfa67e7e1477035058a8a659f2c0ea637
linuxlinux>= 1f86a00c1159fd77e66b1bd6ff1a183f4d46f34d < b1983840287303e0dfb401b1b6cecc5ea7471e90b1983840287303e0dfb401b1b6cecc5ea7471e90
linuxlinux>= 1f86a00c1159fd77e66b1bd6ff1a183f4d46f34d < dd8ba8c0c3f3916d4ee1e3a09da9cd5caff5d227dd8ba8c0c3f3916d4ee1e3a09da9cd5caff5d227
linuxlinux>= 1f86a00c1159fd77e66b1bd6ff1a183f4d46f34d < 1d6bd6183e723a7b256ff34bbb5b498b5f4f2ec01d6bd6183e723a7b256ff34bbb5b498b5f4f2ec0
linuxlinux>= 1f86a00c1159fd77e66b1bd6ff1a183f4d46f34d < a2ae33e1c6361e960a4d00f7cf75d880b54f9528a2ae33e1c6361e960a4d00f7cf75d880b54f9528
linuxlinux>= 1f86a00c1159fd77e66b1bd6ff1a183f4d46f34d < 148891e95014b5dc5878acefa57f1940c281c431148891e95014b5dc5878acefa57f1940c281c431
linuxlinux_kernel>= 0 < 6.1.164-16.1.164-1
linuxlinux_kernel>= 0 < 6.12.74-26.12.74-2
linuxlinux_kernel>= 0 < 6.18.12-16.18.12-1
linuxlinux_kernel>= 5.10 < 5.15.2015.15.201
linuxlinux_kernel>= 5.16 < 6.1.1646.1.164
linuxlinux_kernel>= 6.13 < 6.18.116.18.11
linuxlinux_kernel>= 6.19 < 6.19.16.19.1
linuxlinux_kernel>= 6.2 < 6.6.1276.6.127
linuxlinux_kernel>= 6.7 < 6.12.746.12.74
msrcazl3_kernel_6.6.121.1-1_on_azure_linux_3.0
msrcazl3_kernel_6.6.126.1-1_on_azure_linux_3.0
msrccbl2_kernel_5.15.200.1-1_on_cbl_mariner_2.0
ubuntulinux
ubuntulinux-aws
ubuntulinux-aws-6.8

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_msrc7.0HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.