๐Ÿ” CVE Alert

CVE-2026-93200

UNKNOWN 0.0

i3c: master: Fix use-after-free of master->this

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: i3c: master: Fix use-after-free of master->this sysfs attribute callbacks for the master controller device dereference master->this. However, master->this is freed in i3c_master_detach_free_devs() before the master device itself is released. As a result, sysfs accesses can dereference a freed master->this pointer, leading to a use-after-free. Keep master->this alive until i3c_masterdev_release(), which is called after the master device and its sysfs state are being torn down. Do not free master->this as part of the normal device detach path. On the error path in i3c_master_set_info(), reset master->this and bus.cur_master to NULL before freeing the allocated device.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 17, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
3a379bbcea0af6280e1ca0d1edfcf4e68cde6ee0 < 4f3145db05fede36b35f8249b8acde5bd5d54864 3a379bbcea0af6280e1ca0d1edfcf4e68cde6ee0 < 50034d8d0f797c3a7a599f750a7d3e792e80dea5 3a379bbcea0af6280e1ca0d1edfcf4e68cde6ee0 < feb0ed76601f3c2f91f08688c5a7d8b9d382f720
Linux / Linux
5.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/4f3145db05fede36b35f8249b8acde5bd5d54864 git.kernel.org: https://git.kernel.org/stable/c/50034d8d0f797c3a7a599f750a7d3e792e80dea5 git.kernel.org: https://git.kernel.org/stable/c/feb0ed76601f3c2f91f08688c5a7d8b9d382f720