CVE-2026-89944
Received
Received - Intake
BaseFortify
Vulnerability report for CVE-2026-89944, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.
Publication date: 2026-09-16
Last updated on: 2026-09-16
Assigner: kernel.org
Description
Description
In the Linux kernel, the following vulnerability has been resolved:
ASoC: hdac_hda: Fix hlink refcount leak on component registration failure
hdac_hda_dev_probe() gets the HDA link with snd_hdac_ext_bus_link_get()
before registering the ASoC component. If component registration fails,
the function returns without dropping the link reference.
Always call snd_hdac_ext_bus_link_put() after the registration attempt so
the reference taken during probe is balanced on both success and failure.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| Linux | Linux | 6bae5ea9498926440ffc883f3dbceb0adc65e492 |
| Linux | Linux | 6bae5ea9498926440ffc883f3dbceb0adc65e492 |
| Linux | Linux | 6bae5ea9498926440ffc883f3dbceb0adc65e492 |
| Linux | Linux | 6bae5ea9498926440ffc883f3dbceb0adc65e492 |
| Linux | Linux | 4.20 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-UNKNOWN |