CVE-2026-90421
PCI: Fix UAF when probe runs concurrent to dyn ID removal
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
In the Linux kernel, the following vulnerability has been resolved: PCI: Fix UAF when probe runs concurrent to dyn ID removal Dynamic IDs are only guaranteed to be valid when dynids.lock is held, as remove_id_store() can free the node. Thus, make a copy in pci_match_device(). Also, clarify that the id parameter is only valid during probe.
| Vendor | linux |
| Product | linux |
| Ecosystems | |
| Industries | Technology |
| Published | Sep 17, 2026 |
Stay Ahead of the Next One
Get instant alerts for linux linux
Be the first to know when new unknown vulnerabilities affecting linux linux are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Linux / Linux
0994375e9614f78657031e04e30019b9cdb62795 < 42a5661ff7e4c7d3c5025d0f8e5079fb5479ea49 0994375e9614f78657031e04e30019b9cdb62795 < 3ffc4c9690c33ee28cdb3d0182b12f9c623e3acc
Linux / Linux
2.6.30