{"id":"CVE-2026-90288","published":"2026-09-17T17:17:25.860","lastModified":"2026-09-18T18:17:51.750","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nphy: renesas: rcar-gen2: Fix double of_node_put on phy creation failure\n\nfor_each_child_of_node_scoped() releases the node reference on scope\nexit, so the explicit of_node_put(np) in the devm_phy_create() error\npath drops it twice.\n\nDrop the redundant of_node_put() and let the scoped cleanup handle it.","cvssScore":7.4,"cvssSeverity":"HIGH","cvssVector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","cwes":[],"vendors":[],"products":[],"references":[{"url":"https://git.kernel.org/stable/c/5374f3d53376d35085e0727c8c1b945bf7123996","tags":[]},{"url":"https://git.kernel.org/stable/c/b780b8929c759cfa7a892d58625a5ad46cb1cbd2","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}