CVE-2026-64246

Source
https://cve.org/CVERecord?id=CVE-2026-64246
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-64246.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-64246
Downstream
Published
2026-07-24T15:31:14.709Z
Modified
2026-07-27T04:03:20.732254283Z
Summary
power: reset: linkstation-poweroff: fix use-after-free in the linkstation_poweroff_init()
Details

In the Linux kernel, the following vulnerability has been resolved:

power: reset: linkstation-poweroff: fix use-after-free in the linkstationpoweroffinit()

Move ofnodeput(dn) after the ofmatchnode() call, which still needs the node pointer. The node reference is correctly released after use.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/64xxx/CVE-2026-64246.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
e2f471efe1d607a7aff38ce53ec717cebe4283d6
Fixed
93c7ee139721936b6fa717572e74d3994603ae13
Fixed
cdda7d384c05485a232ae9a849f6445accb095bf
Fixed
c04d606f8b35ee7d3ed243f63893a607e9d6c0bc
Fixed
3928ae803dee044b01076c478c279c0bd54164cd
Fixed
2205275be9be981e70ff29610b0117d8853fac70
Fixed
d109e72f3fbccb540473285d17d7519584f7f76e
Fixed
8eec545cde69e46e9a1d2b7d915ce4f5df85b3bd

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-64246.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.15.0
Fixed
5.15.211
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.177
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.144
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.95
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.38
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.3

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-64246.json"