๐Ÿ” CVE Alert

CVE-2026-90268

UNKNOWN 0.0

scsi: sd: Fix error handling in sd_probe() after large pool creation failure

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: scsi: sd: Fix error handling in sd_probe() after large pool creation failure After device_add(&sdkp->disk_dev) succeeds, sd_large_pool_create() failure must unregister disk_dev and let scsi_disk_release() free sdkp. Going through out_free_index kfree()s an already registered device and leaks the sysfs entry.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 17, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
7179e626b76eb42f2529c6f6dd6ba88ea2445372 < 748a14a0d41cfe3017251c11b314f85045414942 7179e626b76eb42f2529c6f6dd6ba88ea2445372 < e3cc6ea1a745e7f5d326f919a428b244fa119d8f
Linux / Linux
7.1

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/748a14a0d41cfe3017251c11b314f85045414942 git.kernel.org: https://git.kernel.org/stable/c/e3cc6ea1a745e7f5d326f919a428b244fa119d8f