{"id":"CVE-2026-93089","summary":"firmware: arm_scmi: Free transport channel on IDR failure","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nfirmware: arm_scmi: Free transport channel on IDR failure\n\nIf transport channel setup succeeds but the following IDR insertion fails,\nthe error path destroys the transport device and frees the channel info\nwithout invoking the transport cleanup callback.\n\nCall chan_free() before destroying the device so transport specific\nresources such as IRQs, mailbox channels and mapped shared memory are\nreleased consistently with the normal teardown path.","modified":"2026-09-18T03:48:44.022988521Z","published":"2026-09-17T16:11:05.713Z","database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/93xxx/CVE-2026-93089.json"},"references":[{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"},{"type":"WEB","url":"https://git.kernel.org/stable/c/ae7980c9af698d0a7e6790d49249abc71f0fc304"},{"type":"WEB","url":"https://git.kernel.org/stable/c/d72e7e5f24687c0490aabf317653caffe0447aeb"},{"type":"WEB","url":"https://git.kernel.org/stable/c/d7c60c0fe2bd452b56fe07947842d64da61b7290"},{"type":"WEB","url":"https://git.kernel.org/stable/c/de0a4c103740cf54cf77370d47e03c9aa51aa5ee"},{"type":"WEB","url":"https://git.kernel.org/stable/c/fbaebd380caa4e1cec9306ca00231da6518a123f"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/93xxx/CVE-2026-93089.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-93089"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"05a2801d8b90c1b5159618d4bd3a3c65d60f3ff1"},{"fixed":"ae7980c9af698d0a7e6790d49249abc71f0fc304"},{"fixed":"de0a4c103740cf54cf77370d47e03c9aa51aa5ee"},{"fixed":"d7c60c0fe2bd452b56fe07947842d64da61b7290"},{"fixed":"fbaebd380caa4e1cec9306ca00231da6518a123f"},{"fixed":"d72e7e5f24687c0490aabf317653caffe0447aeb"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-93089.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"6.3.0"},{"fixed":"6.6.157"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.12.110"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"6.18.52"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.19.0"},{"fixed":"7.2.6"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-93089.json"}}],"schema_version":"1.9.0"}