CVE-2026-64279

Source
https://cve.org/CVERecord?id=CVE-2026-64279
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-64279.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-64279
Downstream
Published
2026-07-25T08:49:23.145Z
Modified
2026-07-28T04:02:28.204129945Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
i2c: core: fix adapter deregistration race
Details

In the Linux kernel, the following vulnerability has been resolved:

i2c: core: fix adapter deregistration race

Adapters can be looked up by their id using i2cgetadapter() which takes a reference to the embedded struct device.

Remove the adapter from the IDR before tearing it down during deregistration (and on registration failure) to make sure its resources are not accessed after having been freed (e.g. the device name).

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/64xxx/CVE-2026-64279.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
35fc37f8188177e3ba3e7f99a6e3300e490e9181
Fixed
d39282f552dd6c35b9b84b4af78f1198c24f3373
Fixed
11dfa37bf544cc806f21742ca2fd2d841bd7032e
Fixed
9882a9bd74db08e7bae5821a7050627ae92d3380
Fixed
bb234487a447a99315add1b46aa57b72e163e1eb
Fixed
b6d2af6fe9c1f5ec0484536753c979cbd40a8ac3
Fixed
35dbd1f1f603401155cbd3a180bb18e3a3b675b8
Fixed
b1a58ed9eab146b36f41a55db8f5d7ce9fdedf3f

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-64279.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
2.6.31
Fixed
5.15.212
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.178
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.145
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.96
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.39
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-64279.json"