CVE-2026-63861

Source
https://cve.org/CVERecord?id=CVE-2026-63861
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-63861.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-63861
Downstream
Published
2026-07-19T14:04:48.793Z
Modified
2026-07-21T03:47:29.111529851Z
Summary
spi: mtk-snfi: unregister ECC engine on probe failure and remove() callback
Details

In the Linux kernel, the following vulnerability has been resolved:

spi: mtk-snfi: unregister ECC engine on probe failure and remove() callback

mtksnandprobe() registers the on-host NAND ECC engine, but teardown was missing from both probe unwind and remove-time cleanup. Add a devm cleanup action after successful registration so nandeccunregisteronhosthwengine() runs automatically on probe failures and during device removal.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/63xxx/CVE-2026-63861.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
764f1b7481645b2b4488eda26c4da7f331697e6b
Fixed
6aea4a99410615912d80a4ba0827c4e8d4a8312d
Fixed
3e79a563377a319d016ed0d3cd8c43171670c0f3
Fixed
86357e1d0157d8408b78f8768a69ab263d010316
Fixed
e0b049bd7b279d7b6ad22a637cddced93198a51b
Fixed
98cf4b58299e0c6a537c68cd32155d9e7569e7cb
Fixed
ab00febad191d7a4400aa1c3468279fb508258d4

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-63861.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.19.0
Fixed
6.1.175
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.141
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.91
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.33
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.0.10

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-63861.json"