CVE-2026-64303 | Linux Kernel up to 7.1.3 fsl-lpspi dmaengine_prep_slave_sg use after free

SecurityVulns

A vulnerability marked as very critical has been reported in Linux Kernel up to 7.1.3. The impacted element is the function dmaengine_prep_slave_sg of the component fsl-lpspi. The manipulation leads to use after free.

This vulnerability is listed as CVE-2026-64303. The attack must be carried out locally. There is no available exploit.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More