{"id":"CVE-2026-90188","summary":"null_blk: free global tag_set on init error path","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nnull_blk: free global tag_set on init error path\n\nIf shared_tags is enabled, null_setup_tagset() allocates the global tag_set\nvia null_init_global_tag_set(). If device creation later fails, err_dev\ndestroys the default devices and calls unregister_blkdev(), but never frees\nthe global tag_set. Since module init failed, null_exit() is never invoked,\nso the global tag_set's tags and maps are permanently leaked.\n\nFree the global tag_set in err_dev, matching null_exit() which does\nif (tag_set.ops) blk_mq_free_tag_set(&tag_set).","modified":"2026-09-19T03:47:25.132323432Z","published":"2026-09-17T16:07:10.349Z","database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/90xxx/CVE-2026-90188.json"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/081cf37e8a0e00cd91d6df53172c9d928790a798"},{"type":"WEB","url":"https://git.kernel.org/stable/c/0b2faa330184340d9418ad2c627c2ae881772e33"},{"type":"WEB","url":"https://git.kernel.org/stable/c/2882e1450fa4597811a951196e07553ea134eb31"},{"type":"WEB","url":"https://git.kernel.org/stable/c/2b59484ac1e64dd78dbe8c6140891c6308085a75"},{"type":"WEB","url":"https://git.kernel.org/stable/c/5a1c5ff3a49ba93a1fd0b70537e7a0164071760d"},{"type":"WEB","url":"https://git.kernel.org/stable/c/665c94554ff0d5d88caae7f40c16c8e0a3369eda"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/90xxx/CVE-2026-90188.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-90188"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"82f402fefa50f1675bf918bcd009981bd6b30ac8"},{"fixed":"0b2faa330184340d9418ad2c627c2ae881772e33"},{"fixed":"665c94554ff0d5d88caae7f40c16c8e0a3369eda"},{"fixed":"2882e1450fa4597811a951196e07553ea134eb31"},{"fixed":"2b59484ac1e64dd78dbe8c6140891c6308085a75"},{"fixed":"081cf37e8a0e00cd91d6df53172c9d928790a798"},{"fixed":"5a1c5ff3a49ba93a1fd0b70537e7a0164071760d"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-90188.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"4.13.0"},{"fixed":"6.1.188"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.157"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.12.110"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"6.18.52"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.19.0"},{"fixed":"7.2.6"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-90188.json"}}],"schema_version":"1.9.0"}