VDB

CVE-2026-80974

CVE-2026-80974 PUBLISHED

Reported by Linux · Published September 11, 2026

In the Linux kernel, the following vulnerability has been resolved: mfd: sm501: Fix potential memory leaks during remove The memory allocated for struct sm501_devdata in sm501_pci_probe() and sm501_plat_probe() is not freed by the corresponding remove functions sm501_pci_remove() and sm501_plat_remove(). Fix that by adding a call to kfree().

EPSS 0.20% · 10.1th percentile

Risk Scores

EPSS Score
0.20%
10.1th percentile

Affected Products

VendorProductVersions
LinuxLinuxb6d6454fdb66f3829af8b92ab06825b6060fdf7e, b6d6454fdb66f3829af8b92ab06825b6060fdf7e, b6d6454fdb66f3829af8b92ab06825b6060fdf7e
LinuxLinux2.6.21, 0, 6.12.109
LinuxLinux7.3-rc1, 0, 6.12.109
linuxlinux_kernel2.6.21, 2.6.21, 2.6.21

Timeline

  • Sep 11, 2026 CVE Published
  • Sep 11, 2026 CVE Updated
  • Sep 12, 2026 EPSS Score
  • Sep 12, 2026 Coalition ESS Score
  • Sep 17, 2026 EPSS Score

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›