Memory Management Vulnerability in Linux Kernel Affecting Power Supply Management
CVE-2026-53308
What is CVE-2026-53308?
A memory management vulnerability has been identified in the Linux kernel concerning the max77705 power supply driver. This issue arises from improper allocation and destruction of workqueues, leading to potential memory leaks on removal. The driver fails to destroy the allocated workqueue before handling interrupts, which can result in the scheduling of tasks on freed memory. This situation creates a race condition, increasing the risk of system instability and security breaches. The vulnerability has been addressed by revising the workqueue handling process to ensure proper allocation and cleanup, thus enhancing overall system reliability.
Affected Version(s)
Linux a6a494c8e3ce1fe84aac538b087a4cab868ed83f
Linux a6a494c8e3ce1fe84aac538b087a4cab868ed83f < 1e668baadefb16e81269dbfebf3ffc2672e3a3bb
Linux 6.15