Description
In the Linux kernel, the following vulnerability has been resolved:

mtd: slram: remove failed entries from the device list

register_device() links a new slram_mtdlist entry before allocating all
of the state needed by the entry. If a later allocation, memremap(), or
mtd_device_register() fails, the partially initialized entry remains on
the global list. A later cleanup can then dereference or free invalid
state from that failed entry.

Unwind the partially initialized entry and clear the list tail on each
failure path after the entry has been linked.
Published: 2026-08-15
Score: n/a
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

In the Linux kernel, the SLRAM MTD device registration routine links a new list entry before allocating all required state. If a subsequent memory allocation, remapping, or device registration fails, the partially constructed entry remains on the global list. When the system later cleans up, the dangling entry causes dereferences or frees of invalid memory, leading to kernel memory corruption. This can result in a kernel panic, loss of service, or if an attacker controls the allocation path, potential privilege escalation. The likely attack vector involves local exploitation through loading or manipulating MTD devices, though remote exploitation would require code execution privileges to trigger the failure paths.

Affected Systems

All Linux kernels that include the SLRAM MTD subsystem are affected. No specific upstream version numbers are provided; the vulnerability exists in any kernel build that has not applied the mitigation commit referenced in the advisory.

Risk and Exploitability

The CVSS score is not provided, and EPSS information is unavailable, but the vulnerability involves critical kernel memory handling. It is listed as not in the CISA KEV catalog. Because the flaw requires control over device registration or failure handling, it is considered a local exploit with high potential impact. No public exploits are reported, but the risk of exploitation remains significant for affected systems.

Generated by OpenCVE AI on August 15, 2026 at 09:10 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the Linux kernel to a release that incorporates the CVE-2026-72171 fix.
  • If an upgrade cannot be performed immediately, disable or unload any SLRAM MTD device drivers until the patch is applied.
  • Monitor kernel logs (e.g., dmesg, /var/log/kern.log) for signs of kernel panics or memory corruption related to SLRAM to detect exploitation attempts.
  • Audit any custom kernel modules that interact with MTD devices for unsafe memory handling and apply patches as necessary.

Generated by OpenCVE AI on August 15, 2026 at 09:10 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 15 Aug 2026 09:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-416

Sat, 15 Aug 2026 06:00:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: mtd: slram: remove failed entries from the device list register_device() links a new slram_mtdlist entry before allocating all of the state needed by the entry. If a later allocation, memremap(), or mtd_device_register() fails, the partially initialized entry remains on the global list. A later cleanup can then dereference or free invalid state from that failed entry. Unwind the partially initialized entry and clear the list tail on each failure path after the entry has been linked.
Title mtd: slram: remove failed entries from the device list
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-08-15T05:53:37.070Z

Reserved: 2026-08-09T03:40:39.910Z

Link: CVE-2026-72171

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-15T06:21:35.220

Modified: 2026-08-15T06:21:35.220

Link: CVE-2026-72171

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-15T09:15:04Z

Weaknesses