CVE-2026-31749
Description
In the Linux kernel, the following vulnerability has been resolved:
comedi: ni_atmio16d: Fix invalid clean-up after failed attach
If the driver's COMEDI "attach" handler function (atmio16d_attach()) returns an error, the COMEDI core will call the driver's "detach" handler function (atmio16d_detach()) to clean up. This calls reset_atmio16d() unconditionally, but depending on where the error occurred in the attach handler, the device may not have been sufficiently initialized to call reset_atmio16d(). It uses dev->iobase as the I/O port base address and dev->private as the pointer to the COMEDI device's private data structure. dev->iobase may still be set to its initial value of 0, which would result in undesired writes to low I/O port addresses. dev->private may still be NULL, which would result in null pointer dereferences.
Fix atmio16d_detach() by checking that dev->private is valid (non-null) before calling reset_atmio16d(). This implies that dev->iobase was set correctly since that is set up before dev->private.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 6 more
- cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=2.6.30,<5.10.253
- cpe:2.3:o:linux:linux_kernel:7.0:rc1:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc2:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc3:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc4:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc5:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.0:rc6:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
8- git.kernel.org/stable/c/101ab946b79ad83b36d5cfd47de587492a80acf0nvdPatch
- git.kernel.org/stable/c/3848ae00b1642e2c98ff8cbfd2d3b38c6f53b5c3nvdPatch
- git.kernel.org/stable/c/43c68a2c7cc35b7c2a83c285cb4ad3d472b8caa2nvdPatch
- git.kernel.org/stable/c/5d8d88c8c0eec230de8f1f60e0920a4337939a88nvdPatch
- git.kernel.org/stable/c/933a2d6a95f9bfb203e562c9be1dd990c735535cnvdPatch
- git.kernel.org/stable/c/a01dd339ea6ac58b0967a50085622a6017351140nvdPatch
- git.kernel.org/stable/c/d07d97ca4f7fac467cdcf4a012690853958b7e89nvdPatch
- git.kernel.org/stable/c/f517646e008fe99ca1800601cd011b110f8684aenvdPatch
News mentions
0No linked articles in our index yet.