CVE-2026-98054

medium

Description

In the Linux kernel, the following vulnerability has been resolved: ASoC: Intel: avs: Fix unbalanced module reference count strace_open() invokes try_module_get() which on success takes the module reference. If any follow up operation causes strace_open() to fail, the refcount shall be put down.

References

https://git.kernel.org/stable/c/d4fa6f94b91137e329ea3f5b360e140b227bb696

https://git.kernel.org/stable/c/60b396b2aeca303bc468937d2b44a82399f37b3c

https://git.kernel.org/stable/c/3fcf670f023d47e4eb970fb886ee562b5bdfbee7

https://git.kernel.org/stable/c/23ebd4ed5799340f1d2193195c97f61d39aa9899

Details

Source: Mitre, NVD

Published: 2026-09-25

Updated: 2026-09-25

Risk Information

CVSS v2

Base Score: 4.9

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium

EPSS

EPSS: 0.00168