CVE-2024-26866

spi: lpspi: Avoid potential use-after-free in probe()

References

Notes

 carnil> Introduced in 5314987de5e5 ("spi: imx: add lpspi bus driver"). Vulnerable
 carnil> versions: 4.10-rc1.

Bugs

Status

Branch Status
upstream released (6.9-rc1) [2ae0ab0143fcc06190713ed81a6486ed0ad3c861]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.12-upstream-stable N/A "Fixed before branching point"
6.8-upstream-stable released (6.8.2) [996ce839606afd0fef91355627868022aa73eb68]
6.7-upstream-stable released (6.7.11) [1543418e82789cc383cd36d41469983c64e3fc7f]
6.6-upstream-stable released (6.6.23) [da83ed350e4604b976e94239b08d8e2e7eaee7ea]
6.1-upstream-stable needed
5.10-upstream-stable needed
sid released (6.7.12-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security needed
5.10-bullseye-security needed