CVE-2026-74271

Source
https://cve.org/CVERecord?id=CVE-2026-74271
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-74271.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-74271
Downstream
Published
2026-08-15T05:57:44Z
Modified
2026-08-18T03:31:15Z
Summary
power: supply: core: fix supplied_from allocations
Details

In the Linux kernel, the following vulnerability has been resolved:

power: supply: core: fix supplied_from allocations

If dts property power-supplies has multiple values, then accessing to psy->supplied_from[i-1] in __power_supply_populate_supplied_from will overrun supplied_from array.

Database specific
{
    "cna_assigner":  "Linux",
    "osv_generated_from":  "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/74xxx/CVE-2026-74271.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
f6e0b081fb300a4601b064346963cf6bb163f437
Fixed
ae55e4bf18ee0c4c170797dd65e17dbdf644fcf2
Fixed
23a29ee1d9de38b7d6226b27653bc736b28ff05a
Fixed
fefc9dad30d545be288d50a0b10d00465015fcfe
Fixed
d0503357653ee62188987a26baa2d7f3689f367e
Fixed
14357ba006e1586e4b4e809c074b21baf0aa4c4b
Fixed
ba61aed9a34671222d1149acfc2f0179a9ce7e80

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-74271.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.10.0
Fixed
6.1.178
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.145
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.97
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-74271.json"