CVE-2026-89437

Source
https://cve.org/CVERecord?id=CVE-2026-89437
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89437.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-89437
Downstream
Related
Published
2026-09-11T19:43:07Z
Modified
2026-10-04T02:47:10Z
Summary
platform/x86: int1092: Fix potential memory leak in sar_probe()
Details

In the Linux kernel, the following vulnerability has been resolved:

platform/x86: int1092: Fix potential memory leak in sar_probe()

The memory allocated for device_mode_info in parse_package() called by sar_get_data() is not freed in some of the error paths in sar_probe(). Fix that by converting to use device managed allocations.

Database specific
{
    "cna_assigner":  "Linux",
    "osv_generated_from":  "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/89xxx/CVE-2026-89437.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
dcfbd31ef4bcf6ceb373911faa4a5299e0547702
Fixed
4bdbb7f1045820aa8fd87d84db6b26c01049a005
Fixed
08dab7065f9369dd0a0aa740071bcd884c4848b0
Fixed
582b82e573a059be9319bb16b84c45d0ef66f471
Fixed
30c906cff490c3601ee9ff110fe8115fabe75fd4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89437.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.15.0
Fixed
6.12.112
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.52
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89437.json"