← All Advisories

CVE-2026-97946

Last refreshed2026-10-03

Status: UPDATED  |  Advisory ID: CVE-2026-97946

Key Details

CVECVE-2026-97946
Affected productsLinux Linux

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
LinuxLinux
SubsystemsGeneral OT
SectorsMultiple

What to Know

In the Linux kernel, the following vulnerability has been resolved:

x86/amd_node: Fix PCI device reference counting in amd_smn_init()

The local "root" pointer is a temporary variable used during the device

search. Therefore, refcount related to the search iterators should be cleaned

up after the search is complete.

Use the __free() cleanup macro to ensure the refcount is decremented when the

temporary pointer goes out of scope.

Additionally, increment the refcount when caching a root pointer. This ensures

the in-use refcount is separate from the temporary search refcounting.

Finally, drop the redundant "root = NULL" before the second search loop. The

pci_get_class() iterator always decrements the refcount of its "from"

argument, so the first loop can only fall through with "root" already NULL. (NVD)

What to Do

Monitor Linux's web page for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-97946
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-97946