← All Advisories

CVE-2026-97412

Last refreshed2026-10-03

Status: UPDATED  |  Advisory ID: CVE-2026-97412

Key Details

CVECVE-2026-97412
Affected productsLinux Linux

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
LinuxLinux
SubsystemsGeneral OT
SectorsMultiple

What to Know

In the Linux kernel, the following vulnerability has been resolved:

pds_core: quiesce DMA before freeing resources

pdsc_teardown() frees DMA buffers but does not disable bus mastering,

leaving the device able to perform DMA after the buffers are freed.

This can lead to use-after-free if the device writes to freed memory.

Add pci_clear_master() to pdsc_teardown() to disable bus mastering

before freeing resources, ensuring all DMA is quiesced.

Add pci_set_master() to pdsc_setup() to re-enable bus mastering,

which is needed for the firmware recovery path since pdsc_teardown()

now disables it. (NVD)

What to Do

Monitor Linux's web page for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-97412
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-97412