Description
In the Linux kernel, the following vulnerability has been resolved:

remoteproc: scp: Fix device reference leak on failed lookup

Make sure to drop the reference taken to the SCP device when attempting
to look up its driver data before the driver has been bound.

Note that holding a reference to a device does not prevent its driver
data from going away.
Published: 2026-09-11
Score: 4.4 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Resource Leak
Action: Apply Patch
AI Analysis

Impact

The vulnerability is a device reference leak in the Linux kernel’s remoteproc subsystem when a lookup for an SCP device fails. The kernel retains a reference to the device after the lookup without releasing it, causing an unpaired reference count. This leakage can lead to gradual consumption of kernel memory resources.

Affected Systems

All builds of the Linux kernel that include the remoteproc subsystem and have not yet incorporated the referenced patch are affected, regardless of distribution or kernel version. The flaw is present before the commit that fixes the reference release.

Risk and Exploitability

The CVSS score of 4.4 indicates moderate severity, and the EPSS score of less than 1 % shows a very low expected exploitation probability. The vulnerability is not listed in CISA’s KEV catalog. While the description does not specify a remote attack vector, the likely scenario involves a local or privileged entity repeatedly triggering the failed SCP lookup to cause reference accumulation. No exploitation path to arbitrary code execution or data exfiltration is described in the supplied data.

Generated by OpenCVE AI on September 21, 2026 at 01:23 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update the Linux kernel to a version that includes the remoteproc SCP device reference release fix
  • Disable or remove any unused SCP devices from system configuration until the patch is applied
  • Monitor kernel logs and system resource metrics for signs of reference accumulation

Generated by OpenCVE AI on September 21, 2026 at 01:23 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-6528-1 linux security update
History

Mon, 14 Sep 2026 12:30:00 +0000


Sat, 12 Sep 2026 00:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-772
References
Metrics threat_severity

None

cvssV3_1

{'score': 4.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H'}

threat_severity

Moderate


Fri, 11 Sep 2026 23:45:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: remoteproc: scp: Fix device reference leak on failed lookup Make sure to drop the reference taken to the SCP device when attempting to look up its driver data before the driver has been bound. Note that holding a reference to a device does not prevent its driver data from going away.
Title remoteproc: scp: Fix device reference leak on failed lookup
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-09-14T12:00:38.544Z

Reserved: 2026-09-11T19:38:34.717Z

Link: CVE-2026-89512

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-11T20:19:33.647

Modified: 2026-09-14T13:19:07.850

Link: CVE-2026-89512

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-09-11T19:43:57Z

Links: CVE-2026-89512 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-09-21T01:30:08Z

Weaknesses
  • CWE-772

    Missing Release of Resource after Effective Lifetime