{"id":"CVE-2026-98000","published":"2026-09-25T11:17:28.213","lastModified":"2026-09-25T11:17:28.213","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nhwmon: Fix potential UAF in pec_store\n\nSashiko reports:\n\nIn pec_store(), a guard(mutex)(&hwdev->lock) is taken. If the chip write\noperation returns an error other than -EOPNOTSUPP, the code jumps to the\nput label, which calls put_device(hdev). If this drops the final reference,\nthe device is freed. When the function then returns, the guard cleanup\nfunction runs and attempts to unlock the freed mutex.\n\nUse scoped_guard() instead of guard() to avoid the problem.","cvssScore":null,"cvssSeverity":null,"cvssVector":null,"cwes":[],"vendors":[],"products":[],"references":[{"url":"https://git.kernel.org/stable/c/01dd8b4fc2cf83c66565c0f382fb1841e9000a89","tags":[]},{"url":"https://git.kernel.org/stable/c/354ccc99b2dc8ba0cf6d4de34e520bcf6ecca5c2","tags":[]},{"url":"https://git.kernel.org/stable/c/8afab57bcdbc2186f325972e777880ac5a220f4f","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}