cbcvebase.
CVE-2026-23431
published 2026-04-03

CVE-2026-23431: In the Linux kernel, the following vulnerability has been resolved: spi: amlogic-spisg: Fix memory leak in aml_spisg_probe() In aml_spisg_probe(), ctlr is…

PriorityP416medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.12%
2.2th percentile
In the Linux kernel, the following vulnerability has been resolved: spi: amlogic-spisg: Fix memory leak in aml_spisg_probe() In aml_spisg_probe(), ctlr is allocated by spi_alloc_target()/spi_alloc_host(), but fails to call spi_controller_put() in several error paths. This leads to a memory leak whenever the driver fails to probe after the initial allocation. Convert to use devm_spi_alloc_host()/devm_spi_alloc_target() to fix the memory leak.

Affected

16 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.19.10-1 (forky)linux 6.19.10-1 (forky)
linuxlinux
linuxlinux>= cef9991e04aed3305c61c392e880f6e01a0c2ea4 < bec21d97c968a4806939eb2946df49ea6c341bdebec21d97c968a4806939eb2946df49ea6c341bde
linuxlinux>= cef9991e04aed3305c61c392e880f6e01a0c2ea4 < 8e28a01b69f7ea8df7ceb15470cfe643b2828f4f8e28a01b69f7ea8df7ceb15470cfe643b2828f4f
linuxlinux>= cef9991e04aed3305c61c392e880f6e01a0c2ea4 < b8db9552997924b750e727a625a30eaa4603bbb9b8db9552997924b750e727a625a30eaa4603bbb9
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.19.10-16.19.10-1
linuxlinux_kernel>= 6.17.1 < 6.18.206.18.20
linuxlinux_kernel>= 6.19 < 6.19.106.19.10
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.