Home

Description

In the Linux kernel, the following vulnerability has been resolved: ASoC: stm32: sai: fix OF node leak on probe The reference taken to the sync provider OF node when probing the platform device is currently only dropped if the set_sync() callback fails during DAI probe. Make sure to drop the reference on platform probe failures (e.g. probe deferral) and on driver unbind. This also avoids a potential use-after-free in case the DAI is ever reprobed without first rebinding the platform driver.

PUBLISHED Reserved 2026-01-13 | Published 2026-01-13 | Updated 2026-02-09 | Assigner Linux

Product status

Default status
unaffected

5914d285f6b782892a91d6621723fdc41a775b15 (git) before 7daa50a2157e41c964b745ab1dc378b5b3b626d1
affected

5914d285f6b782892a91d6621723fdc41a775b15 (git) before acda653169e180b1d860dbb6bc5aceb105858394
affected

5914d285f6b782892a91d6621723fdc41a775b15 (git) before 4054a3597d047f3fe87864ef87f399b5d523e6c0
affected

5914d285f6b782892a91d6621723fdc41a775b15 (git) before bae74771fc5d3b2a9cf6f5aa64596083d032c4a3
affected

5914d285f6b782892a91d6621723fdc41a775b15 (git) before 3752afcc6d80d5525e236e329895ba2cb93bcb26
affected

5914d285f6b782892a91d6621723fdc41a775b15 (git) before 23261f0de09427367e99f39f588e31e2856a690e
affected

Default status
affected

4.15
affected

Any version before 4.15
unaffected

5.15.198 (semver)
unaffected

6.1.160 (semver)
unaffected

6.6.120 (semver)
unaffected

6.12.64 (semver)
unaffected

6.18.4 (semver)
unaffected

6.19 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/7daa50a2157e41c964b745ab1dc378b5b3b626d1

git.kernel.org/...c/acda653169e180b1d860dbb6bc5aceb105858394

git.kernel.org/...c/4054a3597d047f3fe87864ef87f399b5d523e6c0

git.kernel.org/...c/bae74771fc5d3b2a9cf6f5aa64596083d032c4a3

git.kernel.org/...c/3752afcc6d80d5525e236e329895ba2cb93bcb26

git.kernel.org/...c/23261f0de09427367e99f39f588e31e2856a690e

cve.org (CVE-2025-71081)

nvd.nist.gov (CVE-2025-71081)

Download JSON