CVE Database
/

CVE-2026-31745

Back to search

CVE-2026-31745

Published: May 1, 2026

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: reset: gpio: fix double free in reset_add_gpio_aux_device() error path When __auxiliary_device_add() fails, reset_add_gpio_aux_device() calls auxiliary_device_uninit(adev). The device release callback reset_gpio_aux_device_release() frees adev, but the current error path then calls kfree(adev) again, causing a double free. Keep kfree(adev) for the auxiliary_device_init() failure path, but avoid freeing adev after auxiliary_device_uninit().

VendorProductVersions

Linux

Linux

affected
5fc4e4cf7a2268b5f73700fd1e8d02159f2417d8 - < 1de465753220deb41569cf2add87bbb0673731db
affected
5fc4e4cf7a2268b5f73700fd1e8d02159f2417d8 - < fbffb8c7c7bb4d38e9f65e0bee446685011de5d8

Linux

Linux

affected
6.19
unaffected
0 - < 6.19
unaffected
6.19.12 - <= 6.19.*
unaffected
7.0 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now