CVE-2026-43144

In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: Fix potential kernel oops when probe fails When probe of the sdio brcmfmac device fails for some reasons (i.e. missing firmware), the sdiodev->bus is set to error instead of NULL, thus the cleanup later in brcmf_sdio_remove() tries to free resources via invalid bus pointer. This happens because sdiodev->bus is set 2 times: first in brcmf_sdio_probe() and second time in brcmf_sdiod_probe(). Fix this by chaning the brcmf_sdio_probe() function to return the error code and set sdio->bus only there.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc1:*:*:*:*:*:*

History

13 May 2026, 21:10

Type Values Removed Values Added
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc1:*:*:*:*:*:*
First Time Linux linux Kernel
Linux
CWE CWE-476
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References () https://git.kernel.org/stable/c/243307a0d1b0d01538e202c00454c28b21d4432e - () https://git.kernel.org/stable/c/243307a0d1b0d01538e202c00454c28b21d4432e - Patch
References () https://git.kernel.org/stable/c/379aac7ee8240848aa35f605b06addb4617c863e - () https://git.kernel.org/stable/c/379aac7ee8240848aa35f605b06addb4617c863e - Patch
References () https://git.kernel.org/stable/c/64ccb0aac41c5055780c2a58bbe2c1b362ceccde - () https://git.kernel.org/stable/c/64ccb0aac41c5055780c2a58bbe2c1b362ceccde - Patch

06 May 2026, 12:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-06 12:16

Updated : 2026-05-13 21:10


NVD link : CVE-2026-43144

Mitre link : CVE-2026-43144

CVE.ORG link : CVE-2026-43144


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-476

NULL Pointer Dereference