CVE-2026-92491
Description
In the Linux kernel, the following vulnerability has been resolved: firmware: arm_scmi: Roll back partial protocol table registration scmi_protocol_table_register() can leave earlier requests registered when a later entry in the same ID table fails. Each request retains a pointer to the driver's ID table, so a failed module load can leave a dangling pointer after the module storage is released. Unrequest only the successfully registered prefix, in reverse order, before returning the failure. Leave the failed entry and the remaining entries untouched because matching requests can be owned by another driver.
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or — if you've already worked around this in production — publish your fix to the community-verified tier.
Propose a mitigation on Community Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
References
- https://git.kernel.org/stable/c/2224b622260ba590ab56ea1585d6bf7610be25b2
- https://git.kernel.org/stable/c/3fa8cabd2d8ed80dd0b818ca7fd410b591392ff6
- https://git.kernel.org/stable/c/456856a34906475fcf4b23879237103770dc7ef2
- https://git.kernel.org/stable/c/826413b858ea2969e4c3e8197d0065efc47c6343
- https://git.kernel.org/stable/c/ee556d118b11c6f5b60a32c1e84f366b336ac7d7
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.