media: i2c: ds90ub9x3: Fix extra fwnode_handle_put()
The ub913 and ub953 drivers call fwnode_handle_put(priv->sd.fwnode) as
part of their remove process, and if the driver is removed multiple
times, eventually leads to put "overflow", possibly causing memory
corruption or crash.
The fwnode_handle_put() is a leftover from commit 905f88ccebb1 ("media:
i2c: ds90ub9x3: Fix sub-device matching"), which changed the code
related to the sd.fwnode, but missed removing these fwnode_handle_put()
calls.
Metrics
Affected Vendors & Products
Source | ID | Title |
---|---|---|
![]() |
EUVD-2025-5198 | In the Linux kernel, the following vulnerability has been resolved: media: i2c: ds90ub9x3: Fix extra fwnode_handle_put() The ub913 and ub953 drivers call fwnode_handle_put(priv->sd.fwnode) as part of their remove process, and if the driver is removed multiple times, eventually leads to put "overflow", possibly causing memory corruption or crash. The fwnode_handle_put() is a leftover from commit 905f88ccebb1 ("media: i2c: ds90ub9x3: Fix sub-device matching"), which changed the code related to the sd.fwnode, but missed removing these fwnode_handle_put() calls. |
![]() |
USN-7521-1 | Linux kernel vulnerabilities |
![]() |
USN-7521-2 | Linux kernel (AWS) vulnerabilities |
![]() |
USN-7521-3 | Linux kernel vulnerabilities |
![]() |
USN-7651-1 | Linux kernel vulnerabilities |
![]() |
USN-7651-2 | Linux kernel vulnerabilities |
![]() |
USN-7651-3 | Linux kernel vulnerabilities |
![]() |
USN-7651-4 | Linux kernel (GCP) vulnerabilities |
![]() |
USN-7651-5 | Linux kernel (Raspberry Pi Real-time) vulnerabilities |
![]() |
USN-7651-6 | Linux kernel (Raspberry Pi) vulnerabilities |
![]() |
USN-7652-1 | Linux kernel (Real-time) vulnerabilities |
![]() |
USN-7653-1 | Linux kernel (HWE) vulnerabilities |
![]() |
USN-7737-1 | Linux kernel (Azure) vulnerabilities |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 23 Oct 2025 13:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-787 | |
CPEs | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
Metrics |
cvssV3_1
|
cvssV3_1
|
Fri, 28 Feb 2025 02:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
| |
Metrics |
threat_severity
|
cvssV3_1
|
Thu, 27 Feb 2025 02:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In the Linux kernel, the following vulnerability has been resolved: media: i2c: ds90ub9x3: Fix extra fwnode_handle_put() The ub913 and ub953 drivers call fwnode_handle_put(priv->sd.fwnode) as part of their remove process, and if the driver is removed multiple times, eventually leads to put "overflow", possibly causing memory corruption or crash. The fwnode_handle_put() is a leftover from commit 905f88ccebb1 ("media: i2c: ds90ub9x3: Fix sub-device matching"), which changed the code related to the sd.fwnode, but missed removing these fwnode_handle_put() calls. | |
Title | media: i2c: ds90ub9x3: Fix extra fwnode_handle_put() | |
References |
|

Status: PUBLISHED
Assigner: Linux
Published:
Updated: 2025-05-04T10:08:10.796Z
Reserved: 2025-02-27T02:10:48.226Z
Link: CVE-2024-58003

No data.

Status : Analyzed
Published: 2025-02-27T03:15:11.277
Modified: 2025-10-23T13:04:16.960
Link: CVE-2024-58003


Updated: 2025-07-12T16:01:27Z