CVE-2026-31732

Source
https://cve.org/CVERecord?id=CVE-2026-31732
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-31732.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-31732
Downstream
Related
Published
2026-05-01T14:14:30.844Z
Modified
2026-07-15T01:48:59.635871585Z
Summary
gpio: Fix resource leaks on errors in gpiochip_add_data_with_key()
Details

In the Linux kernel, the following vulnerability has been resolved:

gpio: Fix resource leaks on errors in gpiochipadddatawithkey()

Since commit aab5c6f20023 ("gpio: set device type for GPIO chips"), gdev->dev.release is unset. As a result, the reference count to gdev->dev isn't dropped on the error handling paths.

Drop the reference on errors.

Also reorder the instructions to make the error handling simpler. Now gpiochipadddatawithkey() roughly looks like:

Some memory allocation. Go to ERR ZONE 1 on errors. device_initialize().

gpiodev_release() takes over the responsibility for freeing the resources of gdev->dev. The subsequent error handling paths shouldn't go through ERR ZONE 1 again which leads to double free.

Some initialization mainly on gdev. The rest of initialization. Go to ERR ZONE 2 on errors. Chip registration success and exit.

ERR ZONE 2. gpiodeviceput() and exit. ERR ZONE 1.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/31xxx/CVE-2026-31732.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
aab5c6f200238ac45001bec3d5494fff8438a8dc
Fixed
a500e1837c4266ddb05b39b3e1cc71f49a43ffa5
Fixed
f0cf9c7b7c281956cc0dec163132cd96f76e1d60
Fixed
fb4584d2b324c522404c733c65840a1a6519ada8
Fixed
16fdabe143fce2cbf89139677728e17e21b46c28

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-31732.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.9.0
Fixed
6.12.95
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.22
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
6.19.12

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-31732.json"