CVE-2026-23090
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
04/02/2026
Last modified:
04/02/2026
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
slimbus: core: fix device reference leak on report present<br />
<br />
Slimbus devices can be allocated dynamically upon reception of<br />
report-present messages.<br />
<br />
Make sure to drop the reference taken when looking up already registered<br />
devices.<br />
<br />
Note that this requires taking an extra reference in case the device has<br />
not yet been registered and has to be allocated.



