CyberRota
← Ana sayfaya dön

CVE-2026-43460

HIGH · CVSS 7.8 EPSS %0.01

Kaynak: NVD + CISA KEV + EPSS · Yayınlanma: 2026-05-08T15:16:58.880 · Çekilme zamanı: 2026-06-07T12:00:35.458261+00:00

CyberRota Yorumu

Detaylı analiz gerekiyor.

CVE
CVE-2026-43460
Severity
HIGH
CVSS
7.8
EPSS
%0.01
Linux

Orijinal NVD Açıklaması

In the Linux kernel, the following vulnerability has been resolved: spi: rockchip-sfc: Fix double-free in remove() callback The driver uses devm_spi_register_controller() for registration, which automatically unregisters the controller via devm cleanup when the device is removed. The manual call to spi_unregister_controller() in the remove() callback can lead to a double-free. And to make sure controller is unregistered before DMA buffer is unmapped, switch to use spi_register_controller() in probe().