๐Ÿ” CVE Alert

CVE-2026-31527

UNKNOWN 0.0

driver core: platform: use generic driver_override infrastructure

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: driver core: platform: use generic driver_override infrastructure When a driver is probed through __driver_attach(), the bus' match() callback is called without the device lock held, thus accessing the driver_override field without a lock, which can cause a UAF. Fix this by using the driver-core driver_override infrastructure taking care of proper locking internally. Note that calling match() from __driver_attach() without the device lock held is intentional. [1]

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Apr 22, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
3d713e0e382e6fcfb4bba1501645b66c129ad60b < 9a6086d2a828dd2ff74cf9abcae456670febd71f 3d713e0e382e6fcfb4bba1501645b66c129ad60b < 7c02a9bd7d14a89065fcf672b86d8e1d1a41d3b1 3d713e0e382e6fcfb4bba1501645b66c129ad60b < edee7ee5a14c3b33f6d54641f5af5c5e9180992d 3d713e0e382e6fcfb4bba1501645b66c129ad60b < 2b38efc05bf7a8568ec74bfffea0f5cfa62bc01d
Linux / Linux
3.17

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/9a6086d2a828dd2ff74cf9abcae456670febd71f git.kernel.org: https://git.kernel.org/stable/c/7c02a9bd7d14a89065fcf672b86d8e1d1a41d3b1 git.kernel.org: https://git.kernel.org/stable/c/edee7ee5a14c3b33f6d54641f5af5c5e9180992d git.kernel.org: https://git.kernel.org/stable/c/2b38efc05bf7a8568ec74bfffea0f5cfa62bc01d