CVE-2026-80732

Source
https://cve.org/CVERecord?id=CVE-2026-80732
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80732.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-80732
Downstream
Published
2026-09-03T08:21:49.526Z
Modified
2026-09-05T03:48:34.817987367Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
ata: pata_sl82c105: fix bridge revision use-after-free
Details

In the Linux kernel, the following vulnerability has been resolved:

ata: pata_sl82c105: fix bridge revision use-after-free

pcigetslot() returns a referenced PCI device. Commit 44c10138fd4b ("PCI: Change all drivers to use pcidevice->revision") replaced a configuration-space read with direct access to the cached revision field, but left that access after pcidev_put(). The bridge may therefore be freed before its revision is read.

Read the revision before dropping the reference.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80732.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
44c10138fd4bbc4b6d6bff0873c24902f2a9da65
Fixed
1268ca9418e2217f2b60705cf4a280b689b26678
Fixed
a626dfca96041842053cf2d1efceb436c4cd8dcf
Fixed
5ef87b1b4656d675440ceab32a56e69ad958d3a1
Fixed
fa0dca89b4fb0909ffda7b9ab6051af33270f95e
Fixed
dc711fb137b33c12e6ca22b6a9c9b9f21d49e4de
Fixed
a837deeaa37cc3f0e8c4e5c096787047f272c956
Fixed
56fd78c8c820f527f8003e379ab71004b2e79a44
Fixed
7700a31039cdc6715cb6cce7e7a664ee4e945f67

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80732.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
2.6.23
Fixed
5.10.265
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.216
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.183
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.152
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.104
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.45
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.9

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80732.json"