Description
In the Linux kernel, the following vulnerability has been resolved:

regulator: as3722_get_regulator_dt_data: fix premature of_node_put leaving dangling of_node pointer

In as3722_get_regulator_dt_data(), of_get_child_by_name() acquires a
reference on np, which is then assigned to pdev->dev.of_node. The
function immediately calls of_node_put(np), releasing the reference and
leaving pdev->dev.of_node as a dangling pointer.

Remove the of_node_put(np) call to let the device hold the reference.
Published: 2026-09-11
Score: 8.4 High
EPSS: < 1% Very Low
KEV: No
Impact: Use‑after‑free leading to kernel memory corruption
Action: Apply Patch
AI Analysis

Impact

A premature release of a device‑tree node reference in the Linux kernel’s as3722 regulator driver leaves the driver’s of_node pointer dangling. The tainted pointer can be dereferenced later, creating a use‑after‑free condition (CWE‑825). The vulnerability is confined to kernel space and could corrupt kernel memory if the dangling reference is accessed. The CVSS score of 8.4 indicates a high severity impact on confidentiality, integrity and availability, while the EPSS score of less than 1% implies that exploitation is unlikely at the moment.

Affected Systems

All Linux kernel builds that include the CONFIG_REGULATOR_AS3722 driver are affected until the driver is patched. This includes any distribution that ships the driver in its kernel, regardless of kernel release version.

Risk and Exploitability

The risk of exploitation is low because the attack would require local access to influence the driver’s interaction with the device tree, such as loading a malicious device tree or forcing a driver unload/reload. The likely attack vector is local; however, the precise path of exploitation is inferred from the description and not explicitly documented in the advisory. The vulnerability is not listed in CISA’s KEV catalog.

Generated by OpenCVE AI on September 21, 2026 at 02:38 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply a kernel update that incorporates the fix removing the premature of_node_put in as3722_get_regulator_dt_data.
  • If a kernel upgrade cannot be applied immediately, rebuild the kernel with the CONFIG_REGULATOR_AS3722 option disabled so the driver does not load.
  • Modify the system’s device tree to remove or disable any nodes that reference the as3722 regulator, preventing the driver from being instantiated during boot.

Generated by OpenCVE AI on September 21, 2026 at 02:38 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-6528-1 linux security update
History

Mon, 14 Sep 2026 12:30:00 +0000


Sun, 13 Sep 2026 06:45:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 4.1, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H'}

cvssV3_1

{'score': 8.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Sat, 12 Sep 2026 00:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-825
References
Metrics threat_severity

None

cvssV3_1

{'score': 4.1, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H'}

threat_severity

Moderate


Fri, 11 Sep 2026 23:45:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: regulator: as3722_get_regulator_dt_data: fix premature of_node_put leaving dangling of_node pointer In as3722_get_regulator_dt_data(), of_get_child_by_name() acquires a reference on np, which is then assigned to pdev->dev.of_node. The function immediately calls of_node_put(np), releasing the reference and leaving pdev->dev.of_node as a dangling pointer. Remove the of_node_put(np) call to let the device hold the reference.
Title regulator: as3722_get_regulator_dt_data: fix premature of_node_put leaving dangling of_node pointer
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-09-14T12:00:34.265Z

Reserved: 2026-09-11T19:38:34.715Z

Link: CVE-2026-89504

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-11T20:19:32.673

Modified: 2026-09-14T13:19:07.210

Link: CVE-2026-89504

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-09-11T19:43:52Z

Links: CVE-2026-89504 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-09-21T02:45:08Z

Weaknesses
  • CWE-825

    Expired Pointer Dereference