CVE-2026-98054: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: ASoC: Intel: avs: Fix unbalanced module reference count strace_open() invokes try_module_get() which on success takes the module reference. If any follow up operation causes strace_open() to fail, the refcount shall be put down.
Affected products
- Linux Linux Kernel: from 6.7, before 6.12.111 (fixed in 6.12.111); from 6.13, before 6.18.53 (fixed in 6.18.53); from 6.19, before 7.2.7 (fixed in 7.2.7); version 7.3 only
Published 2026-09-25. Last modified 2026-10-06.