Use-After-Free and Resource Leak in Lenovo SE10 Watchdog for Linux Kernel
CVE-2026-97504

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
24 September 2026

What is CVE-2026-97504?

A vulnerability has been identified in the Lenovo SE10 watchdog implementation within the Linux kernel. The issue pertains to potential use-after-free and resource leak scenarios. The vulnerability arises when the se10_pdev is not set to null, leading to a risk of dereferencing freed memory. The development team has addressed this by removing the DMI callback and directly invoking se10_create_platform_device while ensuring that all error conditions are accurately handled. This mitigation enhances the stability and security of the Linux kernel environment against such vulnerabilities.

Affected Version(s)

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 3394e894880a60338a2981dd688fd25e88d79667

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.