CVE-2026-45871

Source
https://cve.org/CVERecord?id=CVE-2026-45871
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-45871.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-45871
Downstream
Related
Published
2026-05-27T12:15:51.317Z
Modified
2026-07-22T18:22:53.964416661Z
Summary
tpm: st33zp24: Fix missing cleanup on get_burstcount() error
Details

In the Linux kernel, the following vulnerability has been resolved:

tpm: st33zp24: Fix missing cleanup on get_burstcount() error

getburstcount() can return -EBUSY on timeout. When this happens, st33zp24send() returns directly without releasing the locality acquired earlier.

Use goto outerr to ensure proper cleanup when getburstcount() fails.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/45xxx/CVE-2026-45871.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
bf38b8710892333cec2d8069644eb36ff435fd6f
Fixed
e0ce3da82341fcd6194175f1837946b2a894c625
Fixed
7687133509cf66ced120b667fefd21f80bf17993
Fixed
1256c6dc96d1e687e6e9b63088156ed07411b00c
Fixed
a51cff9be046e13e1c1b2fe45d5c48b582ec9b8c
Fixed
cc09d55f519e15355de343264a22ac6682b8305e
Fixed
ec15eb67fe9df87981b4829b901ec254273ca483
Fixed
4fffb77d35d038f146e6192da583dbe4971d869e
Fixed
3e91b44c93ad2871f89fc2a98c5e4fe6ca5db3d9

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-45871.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.1.0
Fixed
5.10.252
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.202
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.165
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.128
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.75
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.14
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
6.19.4

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-45871.json"