VYPR
High severity7.8NVD Advisory· Published Jul 24, 2026· Updated Aug 11, 2026

CVE-2026-64221

CVE-2026-64221

Description

In the Linux kernel, the following vulnerability has been resolved:

spi: ti-qspi: fix use-after-free after DMA setup failure

The driver falls back to PIO mode if DMA setup fails during probe.

Make sure to clear the DMA channel pointer also if buffer allocation fails to avoid passing a pointer to the released channel to the DMA engine (or trying to free the channel a second time on late probe errors or driver unbind).

This issue was flagged by Sashiko when reviewing a devres allocation conversion patch.

Affected products

20

Patches

Vulnerability mechanics

References

8

News mentions

0

No linked articles in our index yet.