GHSA-234h-4jcx-ffp3unknown
In the Linux kernel, the following vulnerability has been resolved: net: macb: put the "mdio"...
🔗 CVE IDs covered (1)
📋 Description
In the Linux kernel, the following vulnerability has been resolved:
net: macb: put the "mdio" child node reference on success
macb_mii_init() holds the reference returned by of_get_child_by_name() for macb_mdiobus_register() and drops it only on the error paths, so every successful probe leaks a node reference. On a CM5, overlay removal after four bind cycles reports
OF: ERROR: memory leak, expected refcount 1 instead of 5
Drop the reference after registration, where __mdiobus_register() has already taken its own for the lifetime of the bus.
🔗 References (5)
- https://nvd.nist.gov/vuln/detail/CVE-2026-97972
- https://git.kernel.org/stable/c/382a373d9ea7a6ac4de9c022385b6217f65ae3cc
- https://git.kernel.org/stable/c/5fba30080d298edb742396073372385c961578d3
- https://git.kernel.org/stable/c/7d60dc7ff85b73a2119d582ca2d4456b30960380
- https://github.com/advisories/GHSA-234h-4jcx-ffp3