UNKNOWN NVD
CVE-2026-72140
In the Linux kernel, the following vulnerability has been resolved: i2c: mlxbf: Fix use-after-free in mlxbf_i2c_init_resource() If devm_platform_get_and_iorem
In the Linux kernel, the following vulnerability has been resolved:
i2c: mlxbf: Fix use-after-free in mlxbf_i2c_init_resource()
If devm_platform_get_and_ioremap_resource() returns an error,
mlxbf_i2c_init_resource() frees tmp_res before reading tmp_res->io to
get the error code. This results in a use-after-free.
Save the error code before freeing tmp_res.
References
- https://git.kernel.org/stable/c/5290a52533e09c38374963f4bb0b35121fe555c7
- https://git.kernel.org/stable/c/6a108c9f5a81bb7b29dbb1398be0089655b6bfd2
- https://git.kernel.org/stable/c/71356737a7a55c76fee847563e3d33f8e6dc6b6d
- https://git.kernel.org/stable/c/b398cbbbb9dd76210682a8c9aabd34c5168800b9
- https://git.kernel.org/stable/c/c4d9b6a0c9645366d9e4af8a6ac8347bd4c841aa
This unknown severity vulnerability was published on 2026-08-15 via NVD.
vulnfeed aggregates 11655 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.