CVE-2026-89582

UnknownEPSS 0.17%

Last modified

CVE-2026-89582 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: bnx2x: fix double free in bnx2x_init_firmware() error path bnx2x_init_firmware() frees bp->init_ops, bp->init_data and bp->init_ops_offsets in its error path without setting them to NULL. The cleanup function bnx2x_release_firmware() frees the same three pointers unconditionally, so if init_firmware fails and release_firmware is later called (e.g. from __bnx2x_remove or through the function state machine), all three are freed a second time. Set each pointer to NULL after kfree() in the error path so that the subsequent kfree(NULL) in bnx2x_release_firmware() is a safe no-op.. EPSS estimates a 0.17% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: bnx2x: fix double free in bnx2x_init_firmware() error path bnx2x_init_firmware() frees bp->init_ops, bp->init_data and bp->init_ops_offsets in its error path without setting them to NULL. The cleanup function bnx2x_release_firmware() frees the same three pointers unconditionally, so if init_firmware fails and release_firmware is later called (e.g. from __bnx2x_remove or through the function state machine), all three are freed a second time. Set each pointer to NULL after kfree() in the error path so that the subsequent kfree(NULL) in bnx2x_release_firmware() is a safe no-op.

Metrics

EPSS Probability
0.17%

6.3th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 94a78b79cb5f14c09a42522738d6694c6a1cdd20, < 770715784b689749014ce193ef986b706fe8f51c; >= 94a78b79cb5f14c09a42522738d6694c6a1cdd20, < c44e5d6c3189241d5f791bc7b1eddde6b92f802c; >= 94a78b79cb5f14c09a42522738d6694c6a1cdd20, < 07d4516e3eb1fcde4a5db29eb556cdb0ebba6265; >= 94a78b79cb5f14c09a42522738d6694c6a1cdd20, < ac280f6872e75df49f3004505bcddff91d9e5362; >= 94a78b79cb5f14c09a42522738d6694c6a1cdd20, < dc98e727b9cfc5e19c796bf893878153f00b222b; >= 94a78b79cb5f14c09a42522738d6694c6a1cdd20, < 4d36e38e48340a1ccf92a98c7a22d07a954e5aa3; >= 94a78b79cb5f14c09a42522738d6694c6a1cdd20, < a142c024f07d623e2b6b25943f6c36d4b6b0b4c6; >= 94a78b79cb5f14c09a42522738d6694c6a1cdd20, < d2796ffe38cb4155afe0eab23636295b096c27a5
LinuxLinux2.6.31

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-89582?
In the Linux kernel, the following vulnerability has been resolved: bnx2x: fix double free in bnx2x_init_firmware() error path bnx2x_init_firmware() frees bp->init_ops, bp->init_data and bp->init_ops_offsets in its error path without setting them to NULL. The cleanup function bnx2x_release_firmware() frees the same three pointers unconditionally, so if init_firmware fails and release_firmware is later called (e.g. from __bnx2x_remove or through the function state machine), all three are freed a second time. Set each pointer to NULL after kfree() in the error path so that the subsequent kfree(NULL) in bnx2x_release_firmware() is a safe no-op.
How severe is CVE-2026-89582?
Severity scoring for CVE-2026-89582 is pending analysis. The EPSS model estimates a 0.17% probability of exploitation in the next 30 days.
How do I fix CVE-2026-89582?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-89582?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST