CVE-2026-89512

Source
https://cve.org/CVERecord?id=CVE-2026-89512
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89512.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-89512
Downstream
Published
2026-09-11T19:43:57Z
Modified
2026-09-13T03:47:18Z
Summary
remoteproc: scp: Fix device reference leak on failed lookup
Details

In the Linux kernel, the following vulnerability has been resolved:

remoteproc: scp: Fix device reference leak on failed lookup

Make sure to drop the reference taken to the SCP device when attempting to look up its driver data before the driver has been bound.

Note that holding a reference to a device does not prevent its driver data from going away.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/89xxx/CVE-2026-89512.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
63c13d61eafe4606f1c16c54da40c4eee78e9edf
Fixed
f794c930d8238e370fd61fcb12cc301ae098231b
Fixed
c7e32814a6bf20f792d05f0bc9f94f0606311bc6
Fixed
440bcb0948a12c9104b6dcca99a2cfb0db49b22a
Fixed
22f9efb3ae07f966a1901d929d16df1388cce65c

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89512.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.6.0
Fixed
6.12.109
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.50
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89512.json"