CVE-2026-74415EPSS p8.7%
CVE-2026-74415CVE-2026-74415
Description
In the Linux kernel, the following vulnerability has been resolved:
spi: atcspi200: fix use-after-free when driver unbind
DMA resource is initialized after SPI controller registration. So
when driver unbind, this can trigger a use-after-free when DMA is
torn down while the controller is still alive and triggers DMA transfers.
Scoring
| EPSS | 0.20% probability of exploitation · percentile 8.7% · 2026-10-06T12:00:23Z |
| Last modified | 2026-08-17 |