๐Ÿ” CVE Alert

CVE-2026-97967

UNKNOWN 0.0

hwmon: (corsair-cpro) Remove debugfs entries when probe fails

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: hwmon: (corsair-cpro) Remove debugfs entries when probe fails ccp_debugfs_init() registers debugfs files whose private data is the devm allocated ccp. If hwmon_device_register_with_info() fails right after it, ccp_probe() returns without removing them: the HID core then frees ccp, and ccp_remove() is not called for a failed probe, so the files stay behind. Reading one of them dereferences the freed pointer. Remove the debugfs entries on that error path. debugfs_remove_recursive() waits for readers already inside the show callbacks, so ccp is no longer reachable through debugfs by the time probe returns.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 25, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
5997eb60f896830126bc1783465b678b110e2fdd < ae01aafd8214e48cb7eff11e92dfbf3778d52d9d 5997eb60f896830126bc1783465b678b110e2fdd < a5de53b08cc319dadce6fb68d33749ea37962952 5997eb60f896830126bc1783465b678b110e2fdd < fdc1bc23ff59ee308042342cefcb918d6efba409 5997eb60f896830126bc1783465b678b110e2fdd < 4ee875c423c66c45d7ef7bbff403cd0e3971e0a2
Linux / Linux
6.11

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/ae01aafd8214e48cb7eff11e92dfbf3778d52d9d git.kernel.org: https://git.kernel.org/stable/c/a5de53b08cc319dadce6fb68d33749ea37962952 git.kernel.org: https://git.kernel.org/stable/c/fdc1bc23ff59ee308042342cefcb918d6efba409 git.kernel.org: https://git.kernel.org/stable/c/4ee875c423c66c45d7ef7bbff403cd0e3971e0a2