Description
In the Linux kernel, the following vulnerability has been resolved:

drm/sun4i: tcon: Drop TCON TOP device reference

of_find_device_by_node() takes a device reference. Drop it after mux
configuration succeeds.
Published: 2026-09-17
Score: n/a
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service (memory leak)
Action: Patch Immediately
AI Analysis

Impact

The bug exists in the DRM sun4i TCON driver within the Linux kernel, where a reference obtained via of_find_device_by_node() to the TCON TOP node is never released after successful mux configuration. The unreleased reference keeps kernel objects alive, leading to a kernel‑space memory leak. Repeated driver reloads or configuration changes can amplify the leak, consuming kernel memory and potentially causing system instability or a crash.

Affected Systems

Any Linux kernel build that contains the sun4i TCON driver code compiled before the patch that added the reference drop is impacted. The vendor is Linux and the product is the Linux kernel; no specific version list is supplied, so any pre‑patch build that includes the affected driver remains vulnerable.

Risk and Exploitability

The EPSS score is less than 1 % and the vulnerability is not listed in CISA’s KEV catalog, suggesting a low likelihood of widespread exploitation. The risk to local systems depends on how frequently the driver can be reconfigured or reloaded. The likely attack vector is local or remote code that triggers repeated mux configuration or driver reload, but the need for sustained activity to exhaust kernel memory means that exploitation would likely lead to a denial‑of‑service rather than code execution or privilege escalation. The CVSS score is not provided, which further implies that the severity is moderate rather than critical.

Generated by OpenCVE AI on September 20, 2026 at 00:47 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade the Linux kernel to a version that includes the fix in the drm/sun4i TCON driver.
  • Reboot the system after applying the update so the corrected driver is loaded.
  • If the sun4i TCON functionality is not essential, disable the driver or prevent repeated mux configuration until an update can be applied.

Generated by OpenCVE AI on September 20, 2026 at 00:47 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-4817-1 linux-6.12 security update
Debian DSA Debian DSA DSA-6528-1 linux security update
History

Sun, 20 Sep 2026 01:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-401
CWE-773

Thu, 17 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: drm/sun4i: tcon: Drop TCON TOP device reference of_find_device_by_node() takes a device reference. Drop it after mux configuration succeeds.
Title drm/sun4i: tcon: Drop TCON TOP device reference
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-09-17T16:08:23.249Z

Reserved: 2026-09-11T19:38:34.799Z

Link: CVE-2026-90298

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-17T17:17:27.277

Modified: 2026-09-17T17:17:27.277

Link: CVE-2026-90298

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T01:00:13Z

Weaknesses
  • CWE-401

    Missing Release of Memory after Effective Lifetime

  • CWE-773

    Missing Reference to Active File Descriptor or Handle