CVE-2026-64301

Source
https://cve.org/CVERecord?id=CVE-2026-64301
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-64301.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-64301
Downstream
Published
2026-07-25T08:49:36.999Z
Modified
2026-07-27T04:03:21.181682153Z
Summary
regulator: scmi: fix of_node refcount leak in scmi_regulator_probe()
Details

In the Linux kernel, the following vulnerability has been resolved:

regulator: scmi: fix ofnode refcount leak in scmiregulator_probe()

scmiregulatorprobe() calls offindnodebyname() which takes a reference on the returned device node. On the error path where processscmiregulatorofnode() fails, the function returns without calling ofnodeput() on the child node, leaking the reference.

Add ofnodeput(np) on the error path to properly release the reference.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/64xxx/CVE-2026-64301.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0fbeae70ee7ce98e18a47337cd1f205dd88589e9
Fixed
1e446e8f8c763be3de7d0362e024cdf46194ffef
Fixed
637c11e3d8d43a7ee654591cda8d17c55a9234fa
Fixed
e2baf8ea13fb4b10bec2c4751aea05c00dabcd0f
Fixed
3e1441a4d06d35a314961e40057bd1f0106bbc14
Fixed
22cb337370e6539b0418832c6040e9b00c1b74ca
Fixed
a935b64548fcfe1d5b4dbdd31dddfb0d7019367f
Fixed
fa11039d6cdff84584a3ef8cc1f5e1b56e045da2

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-64301.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.212
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.178
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.145
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.96
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.39
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-64301.json"