CVE-2026-64168

Source
https://cve.org/CVERecord?id=CVE-2026-64168
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-64168.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-64168
Downstream
Published
2026-07-19T15:40:52.741Z
Modified
2026-07-21T03:47:18.120558273Z
Summary
spi: sprd: fix error pointer deref after DMA setup failure
Details

In the Linux kernel, the following vulnerability has been resolved:

spi: sprd: fix error pointer deref after DMA setup failure

The driver falls back to PIO mode if DMA setup fails during probe.

Make sure to check the dma.enabled flag before trying to release the DMA channels also on late probe errors to avoid dereferencing an error pointer (or attempting to release a channel a second time).

This issue was flagged by Sashiko when reviewing a devres allocation conversion patch.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/64xxx/CVE-2026-64168.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
386119bc7be9fa5114ced0274a22a943df890b4b
Fixed
be74e276111f3c23b8e040c8c5e308f67a573add
Fixed
a8f233fb0c7be29b97cd249f64120bf35ce72805
Fixed
0cdea166c1a07c200caf9d0b722224fca43b23ae
Fixed
450c319dd04d0eeff4184889768f7ada826a2e35
Fixed
b6f1acf4e57ccf708cdc0cb70f5bb5b65162963b
Fixed
be409d2bbe9ca7da7b05cc7dde7499bc481f0766
Fixed
c33b4496e95d04722055446c0a31213639438536
Fixed
3d67fffb74267772d461c02c67f1eff893ad547d

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-64168.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.1.0
Fixed
5.10.258
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.209
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.175
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.142
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.92
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.34
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.0.11

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-64168.json"