Home

Description

In the Linux kernel, the following vulnerability has been resolved: net: phy: clean the sfp upstream if phy probing fails Sashiko reported that we don't call sfp_bus_del_upstream() in the probe failure path, so let's add it, otherwise the sfp-bus is left with a dangling 'upstream' field, that may be used later on during SFP events. This issue existed before the generic phylib sfp support, back when drivers were calling phy_sfp_probe themselves.

PUBLISHED Reserved 2026-06-09 | Published 2026-06-25 | Updated 2026-06-25 | Assigner Linux

Product status

Default status
unaffected

298e54fa810e027f1b0800d789eb862592721f08 (git) before 48774e87bbaa0056819d4b52301e4692e50e3252
affected

Default status
affected

5.5
affected

Any version before 5.5
unaffected

7.1 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/48774e87bbaa0056819d4b52301e4692e50e3252

cve.org (CVE-2026-53232)

nvd.nist.gov (CVE-2026-53232)

Download JSON