CVE-2026-89512
Published Sep 11, 2026
Modified Sep 14, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: remoteproc: scp: Fix device reference leak on failed lookup Make sure to drop the reference taken to the SCP device when attempting to look up its driver data before the driver has been bound. Note that holding a reference to a device does not prevent its driver data from going away.
Is your site exposed to CVE-2026-89512?
Run a free security scan — no signup, results in seconds.
EPSS — Exploit Prediction
0.0021
Probability of exploitation
0.11%
Percentile rank
EPSS estimates the probability that this vulnerability will be exploited in the wild within the next 30 days. A higher score means more likely to be exploited.
References
Other References
https://git.kernel.org/stable/c/22f9efb3ae07f966a1901d929d16df1388cce65c
https://git.kernel.org/stable/c/440bcb0948a12c9104b6dcca99a2cfb0db49b22a
https://git.kernel.org/stable/c/554689ff2d7561d91011e69a8bfcef1b71901b2b
https://git.kernel.org/stable/c/6ca338cf2d386fd701b2dc27a2cd4c067a45d545
https://git.kernel.org/stable/c/c7e32814a6bf20f792d05f0bc9f94f0606311bc6
https://git.kernel.org/stable/c/d6ef9060775483bcf57291cbacbc0fe89b5857da
https://git.kernel.org/stable/c/f1c9512ae072996647fb829c6402348d1b72af39
https://git.kernel.org/stable/c/f794c930d8238e370fd61fcb12cc301ae098231b
Frequently Asked Questions
What is CVE-2026-89512? +
In the Linux kernel, the following vulnerability has been resolved:
remoteproc: scp: Fix device reference leak on failed lookup
Make sure to drop the reference taken to the SCP device when attempting
to look up its driver data before the driver has been bound.
Note that holding a reference to a device does not prevent its driver
data from going away.
How do I check if I'm vulnerable to CVE-2026-89512? +
You can use Secably's free Website Scanner to check your website for known vulnerabilities. For infrastructure scanning, use the Port Scanner to identify exposed services that may be affected. Check the vendor advisories linked above for specific patch and version information.