CVE-2026-23387 — Multiple Releases of Same Resource or Handle in Linux
Severity
5.3MEDIUM
No vectorEPSS
0.0%
top 93.71%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 25
Description
In the Linux kernel, the following vulnerability has been resolved:
pinctrl: cirrus: cs42l43: Fix double-put in cs42l43_pin_probe()
devm_add_action_or_reset() already invokes the action on failure,
so the explicit put causes a double-put.
Affected Packages4 packages
▶CVEListV5linux/linux9026f31a520d43cc01eb1c08938fc19efadd78cc — 95b14ecc56881dd9a187e1e84dd0daa88ff22c5d+6
🔴Vulnerability Details
3GHSA▶
GHSA-q9cp-3qrm-w4v3: In the Linux kernel, the following vulnerability has been resolved:
pinctrl: cirrus: cs42l43: Fix double-put in cs42l43_pin_probe()
devm_add_action_↗2026-03-25
OSV▶
CVE-2026-23387: In the Linux kernel, the following vulnerability has been resolved: pinctrl: cirrus: cs42l43: Fix double-put in cs42l43_pin_probe() devm_add_action_or↗2026-03-25