CVE-2026-90214

Source
https://cve.org/CVERecord?id=CVE-2026-90214
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-90214.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-90214
Downstream
Published
2026-09-17T16:07:27Z
Modified
2026-09-19T03:47:25Z
Summary
ASoC: xilinx: formatter_pcm: fix stream_data leak on open error
Details

In the Linux kernel, the following vulnerability has been resolved:

ASoC: xilinx: formatter_pcm: fix stream_data leak on open error

In xlnx_formatter_pcm_open(), stream_data is allocated and adata->play_stream or adata->capture_stream is assigned early. If a later step, such as snd_pcm_hw_constraint_step() or snd_pcm_hw_constraint_integer(), fails, the function returns the error immediately. ALSA does not call the close callback when open fails, so stream_data is leaked and the stream pointer is left dangling, pointing to a substream that ALSA frees. A later interrupt would then call snd_pcm_period_elapsed() on the freed substream.

Free stream_data and clear the stream pointer on the error paths.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/90xxx/CVE-2026-90214.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
6f6c3c36f0917be24587eeba818ab4fdfcb5465a
Fixed
5e1a2d9fff57f3a2b1a0f54d128d64245a253004
Fixed
edf81b293cba1b00a5e71becf184414f6991a6ca
Fixed
3fd89a51b8cfe788df67f54b716b305dd45b8468
Fixed
8c38ae4a465691947977c25d10394da22a64a19f
Fixed
9030aa4e14b704dc39ee208207cb65064020d857
Fixed
8b30628dfc2b2fad3b55a9441776a226035045fa
Fixed
4e0ce77df7d9808926719d7950a07fbad14ea9ef
Fixed
b992511180e126150c6ad3580a6fd568c385f4c6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-90214.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.1.0
Fixed
5.10.270
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.221
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.188
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.157
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.110
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.52
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-90214.json"