CVE-2026-64147

Summary

In the Linux kernel, the following vulnerability has been resolved:

pds_core: fix debugfs_lookup dentry leak and error handling

debugfs_lookup() returns a dentry with an elevated reference count that must be released with dput(). The current code discards the returned dentry without calling dput(), causing a reference leak on every firmware reset recovery.

Additionally, when CONFIG_DEBUG_FS is disabled, debugfs_lookup() returns ERR_PTR(-ENODEV), not NULL. The current check passes for error pointers and would call dput() on an invalid pointer, causing a crash.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux2bbf2b1c20f934a054172175ccbabcc01fe69ef6 < 60ef1675b652e912f3eb064767af4432393291fdaffected
LinuxLinuxbc90fbe0c3182157d2be100a2f6c2edbb1820677 < 26e19622c485e53c3fdb299e822068a0542ddf0caffected
LinuxLinuxbc90fbe0c3182157d2be100a2f6c2edbb1820677 < 91d13e92b983e6c6d7631012c2e20ae8057de9f2affected
LinuxLinuxbc90fbe0c3182157d2be100a2f6c2edbb1820677 < d7f4dd4c8fb380898fef7a77d48fce7ccdb4fc32affected
LinuxLinuxbc90fbe0c3182157d2be100a2f6c2edbb1820677 < dc416e32baaeb620b9809e9e25fc7b30889686e9affected
LinuxLinux3ffe14c36985e3174933127c9efad82ac8f3fefbaffected
LinuxLinux6.6.16 < 6.6.142affected
LinuxLinux6.7.4 < 6.8affected
LinuxLinux6.8affected
LinuxLinux0 < 6.8unaffected
LinuxLinux6.6.142 <= 6.6.*unaffected
LinuxLinux6.12.92 <= 6.12.*unaffected
LinuxLinux6.18.34 <= 6.18.*unaffected
LinuxLinux7.0.11 <= 7.0.*unaffected
LinuxLinux7.1 <= *unaffected

Weaknesses

References