CVE-2026-93200

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/09/2026
Last modified:
03/10/2026

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> i3c: master: Fix use-after-free of master-&gt;this<br /> <br /> sysfs attribute callbacks for the master controller device dereference<br /> master-&gt;this. However, master-&gt;this is freed in<br /> i3c_master_detach_free_devs() before the master device itself is<br /> released.<br /> <br /> As a result, sysfs accesses can dereference a freed master-&gt;this<br /> pointer, leading to a use-after-free.<br /> <br /> Keep master-&gt;this alive until i3c_masterdev_release(), which is called<br /> after the master device and its sysfs state are being torn down. Do not<br /> free master-&gt;this as part of the normal device detach path.<br /> <br /> On the error path in i3c_master_set_info(), reset master-&gt;this and<br /> bus.cur_master to NULL before freeing the allocated device.

Impact