CVE-2026-23091

MEDIUM

Linux kernel - Unknown Vuln

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: intel_th: fix device leak on output open() Make sure to drop the reference taken when looking up the th device during output device open() on errors and on close(). Note that a recent commit fixed the leak in a couple of open() error paths but not all of them, and the reference is still leaking on successful open().

Scores

CVSS v3 5.5
EPSS 0.0002
EPSS Percentile 4.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-401
Status published
Products (24)
linux/Kernel 4.4.0 - 5.10.249linux
linux/Kernel 5.11.0 - 5.15.199linux
linux/Kernel 5.16.0 - 6.1.162linux
linux/Kernel 6.13.0 - 6.18.8linux
linux/Kernel 6.2.0 - 6.6.122linux
linux/Kernel 6.7.0 - 6.12.68linux
Linux/Linux < 4.4
Linux/Linux 39f4034693b7c7bd1fe4cb58c93259d600f55561 - 0fca16c5591534cc1fec8b6181277ee3a3d0f26c
Linux/Linux 39f4034693b7c7bd1fe4cb58c93259d600f55561 - 64015cbf06e8bb75b81ae95b997e847b55280f7f
Linux/Linux 39f4034693b7c7bd1fe4cb58c93259d600f55561 - 95fc36a234da24bbc5f476f8104a5a15f99ed3e3
... and 14 more
Published Feb 04, 2026
Tracked Since Feb 18, 2026