cbcvebase.
CVE-2026-23387
published 2026-03-25

CVE-2026-23387: In the Linux kernel, the following vulnerability has been resolved: pinctrl: cirrus: cs42l43: Fix double-put in cs42l43_pin_probe() devm_add_action_or_reset()…

PriorityP336high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.12%
2.4th percentile
In the Linux kernel, the following vulnerability has been resolved: pinctrl: cirrus: cs42l43: Fix double-put in cs42l43_pin_probe() devm_add_action_or_reset() already invokes the action on failure, so the explicit put causes a double-put.

Affected

30 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.19.8-1 (forky)linux 6.19.8-1 (forky)
linuxlinux
linuxlinux
linuxlinux>= 36f91eeffd03f5c52406e0c4e2e0fb040307d00c < 188ba3468cb7c098c62609d82e9fc58d29ead7f4188ba3468cb7c098c62609d82e9fc58d29ead7f4
linuxlinux>= 6.12.60 < 6.12.776.12.77
linuxlinux>= 6.17.10 < 6.186.18
linuxlinux>= 6.6.118 < 6.6.1306.6.130
linuxlinux>= 9026f31a520d43cc01eb1c08938fc19efadd78cc < 95b14ecc56881dd9a187e1e84dd0daa88ff22c5d95b14ecc56881dd9a187e1e84dd0daa88ff22c5d
linuxlinux>= 9b07cdf86a0b90556f5b68a6b20b35833b558df3 < ea07fcfbba4301839db3784f09955d9fa3e98090ea07fcfbba4301839db3784f09955d9fa3e98090
linuxlinux>= 9b07cdf86a0b90556f5b68a6b20b35833b558df3 < 1e0465139fd9caee7ffefe285ef7d5f21919e4741e0465139fd9caee7ffefe285ef7d5f21919e474
linuxlinux>= 9b07cdf86a0b90556f5b68a6b20b35833b558df3 < fd5bed798f45eb3a178ad527b43ab92705faaf8afd5bed798f45eb3a178ad527b43ab92705faaf8a
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.19.8-16.19.8-1
linuxlinux_kernel>= 0 < 6.6.1306.6.130
linuxlinux_kernel>= 6.12.60 < 6.12.776.12.77
linuxlinux_kernel>= 6.13.0 < 6.18.176.18.17
linuxlinux_kernel>= 6.17.10 < 6.186.18
linuxlinux_kernel>= 6.18.0 < 6.19.76.19.7
linuxlinux_kernel>= 6.18.1 < 6.18.176.18.17
linuxlinux_kernel>= 6.19 < 6.19.76.19.7
linuxlinux_kernel>= 6.6.118 < 6.6.1306.6.130
linuxlinux_kernel>= 6.7.0 < 6.12.776.12.77
ubuntulinux
ubuntulinux-gcp

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
vendor_ubuntu2.0LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.