Description
In the Linux kernel, the following vulnerability has been resolved: PCI: Fix reference leak in pci_register_host_bridge() If device_register() fails, call put_device() to give up the reference to avoid a memory leak, per the comment at device_register(). Found by code review. [bhelgaas: squash Dan Carpenter's double free fix from https://lore.kernel.org/r/db806a6c-a91b-4e5a-a84b-6b7e01bdac85@stanley.mountain]
Product status
37d6a0a6f4700ad3ae7bbf8db38b4557e97b3fe4 (git) before f4db1b2c9ae3d013733c302ee70cac943b7070c0
37d6a0a6f4700ad3ae7bbf8db38b4557e97b3fe4 (git) before 3297497ad2246eb9243849bfbbc57a0dea97d76e
37d6a0a6f4700ad3ae7bbf8db38b4557e97b3fe4 (git) before b783478e0c53ffb4f04f25fb4e21ef7f482b05df
37d6a0a6f4700ad3ae7bbf8db38b4557e97b3fe4 (git) before bd2a352a0d72575f1842d28c14c10089f0cfe1ae
37d6a0a6f4700ad3ae7bbf8db38b4557e97b3fe4 (git) before 9707d0c932f41006a2701afc926b232b50e356b4
37d6a0a6f4700ad3ae7bbf8db38b4557e97b3fe4 (git) before bbba4c50a2d2a1d3f3bf31cc4b8280cb492bf2c7
37d6a0a6f4700ad3ae7bbf8db38b4557e97b3fe4 (git) before f9208aec86226524ec1cb68a09ac70e974ea6536
37d6a0a6f4700ad3ae7bbf8db38b4557e97b3fe4 (git) before 804443c1f27883926de94c849d91f5b7d7d696e9
4.10
Any version before 4.10
5.10.237 (semver)
5.15.181 (semver)
6.1.136 (semver)
6.6.89 (semver)
6.12.24 (semver)
6.13.12 (semver)
6.14.3 (semver)
6.15 (original_commit_for_fix)
References
lists.debian.org/debian-lts-announce/2025/05/msg00045.html
lists.debian.org/debian-lts-announce/2025/05/msg00030.html
git.kernel.org/...c/f4db1b2c9ae3d013733c302ee70cac943b7070c0
git.kernel.org/...c/3297497ad2246eb9243849bfbbc57a0dea97d76e
git.kernel.org/...c/b783478e0c53ffb4f04f25fb4e21ef7f482b05df
git.kernel.org/...c/bd2a352a0d72575f1842d28c14c10089f0cfe1ae
git.kernel.org/...c/9707d0c932f41006a2701afc926b232b50e356b4
git.kernel.org/...c/bbba4c50a2d2a1d3f3bf31cc4b8280cb492bf2c7
git.kernel.org/...c/f9208aec86226524ec1cb68a09ac70e974ea6536
git.kernel.org/...c/804443c1f27883926de94c849d91f5b7d7d696e9