Unrated severityNVD Advisory· Published Aug 15, 2026· Updated Aug 17, 2026
CVE-2026-74415
CVE-2026-74415
Description
In the Linux kernel, the following vulnerability has been resolved:
spi: atcspi200: fix use-after-free when driver unbind
DMA resource is initialized after SPI controller registration. So when driver unbind, this can trigger a use-after-free when DMA is torn down while the controller is still alive and triggers DMA transfers.
Affected products
2Patches
Vulnerability mechanics
References
2News mentions
1- Linux Kernel: 25 Vulnerabilities Across Subsystems Patched in Single Disclosure EventVypr Intelligence · Aug 15, 2026