In the Linux kernel, the following vulnerability has been resolved:
spi: atcspi200: fix use-after-free when driver unbind
DMA resource is initialized after SPI controller registration. So
when driver unbind, this can trigger a use-after-free when DMA is
torn down while the controller is still alive and triggers DMA transfers.
CVE-2026-74415
NONE
EPSS 0.15%
Updated Aug 17, 2026
Linux
CVE Details
CVE ID
CVE-2026-74415
Published Date
Aug 15, 2026
Vendor
Linux
Severity
NONE
Exploit Prediction (EPSS)
Probability of Exploit
0.15%
Likelihood of exploitation in next 30 days
Percentile:
5.0th percentile (higher than 5.0% of all CVEs)
Standard patching cycle
Impact
Minimal impact
Source
View Advisory