CVE-2026-74604: Linux

High severity, CVSS 8.4. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: Revert "thermal/drivers/hwmon: Cleanup coding style a bit" Revert commit 030a48b0f6ce ("thermal/drivers/hwmon: Cleanup coding style a bit") that introduced a use-after-free into the error path of thermal_add_hwmon_sysfs() by removing a valid check from it.

Affected products

  • Linux Linux: from 5.11, before 5.15.216 (fixed in 5.15.216); from 5.16, before 6.1.183 (fixed in 6.1.183); from 6.2, before 6.6.152 (fixed in 6.6.152); from 6.7, before 6.12.104 (fixed in 6.12.104); from 6.13, before 6.18.45 (fixed in 6.18.45); from 6.19, before 7.1.9 (fixed in 7.1.9)

Published 2026-08-22. Last modified 2026-08-25.