Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Free transport channel on IDR failure If transport channel setup succeeds but the following IDR insertion fails, the error path destroys the transport device and frees the channel info without invoking the transport cleanup callback. Call chan_free() before destroying the device so transport specific resources such as IRQs, mailbox channels and mapped shared memory are released consistently with the normal teardown path.
References
- https://git.kernel.org/stable/c/ae7980c9af698d0a7e6790d49249abc71f0fc304
- https://git.kernel.org/stable/c/d72e7e5f24687c0490aabf317653caffe0447aeb
- https://git.kernel.org/stable/c/d7c60c0fe2bd452b56fe07947842d64da61b7290
- https://git.kernel.org/stable/c/de0a4c103740cf54cf77370d47e03c9aa51aa5ee
- https://git.kernel.org/stable/c/fbaebd380caa4e1cec9306ca00231da6518a123f
FAQ
What is CVE-2026-93089?
CVE-2026-93089 is a documented vulnerability. In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Free transport channel on IDR failure If transport channel setup succeeds but the following IDR insertion fail...
How severe is CVE-2026-93089?
CVSS scoring is not yet available for CVE-2026-93089. Check NVD for updates.
Is there a patch for CVE-2026-93089?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.