Answer in brief
CVE-2026-98208 records a Unknown severity vulnerability in mmc: sdio_uart: fix xmit_fifo leak when the port table is full. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=8b197a5ce7a7218bb9fc721647ba0d5734f27348 <9e992d59138fcfaa4bad7cc0750265b0a8bca100 || >=8b197a5ce7a7218bb9fc721647ba0d5734f27348 <b97b5b66c93cb4aaf6358727a73fff880a774dfd || >=8b197a5ce7a7218bb9fc721647ba0d5734f27348 <8a2c1bf209ba04cbd14153a771724bd5aa522fcd || >=8b197a5ce7a7218bb9fc721647ba0d5734f27348 <72f4c2b7a48423c708f2c348585419a1b71ab04c || >=8b197a5ce7a7218bb9fc721647ba0d5734f27348 <fd8223c53ad9553b2a349d2a40e19bbc6e60fc48 || >=8b197a5ce7a7218bb9fc721647ba0d5734f27348 <ac866db277a4c73e84b4263773652e3aba326249 || >=8b197a5ce7a7218bb9fc721647ba0d5734f27348 <5e142adbbdc54afbd01fad476c91cded41d22594 || >=8b197a5ce7a7218bb9fc721647ba0d5734f27348 <53823e25793a97d07e6e98e0904bbf74cac8bc76 | 9e992d59138fcfaa4bad7cc0750265b0a8bca100, b97b5b66c93cb4aaf6358727a73fff880a774dfd, 8a2c1bf209ba04cbd14153a771724bd5aa522fcd, 72f4c2b7a48423c708f2c348585419a1b71ab04c, fd8223c53ad9553b2a349d2a40e19bbc6e60fc48, ac866db277a4c73e84b4263773652e3aba326249, 5e142adbbdc54afbd01fad476c91cded41d22594, 53823e25793a97d07e6e98e0904bbf74cac8bc76 |
| Linux/Linuxgeneric | 2.6.34 | Not reported |
Published upstream
Oct 6, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Oct 6, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Oct 6, 2026
In the Linux kernel, the following vulnerability has been resolved: mmc: sdio_uart: fix xmit_fifo leak when the port table is full sdio_uart_add_port() allocates the transmit fifo before claiming a slot in sdio_uart_table[]. When all UART_NR slots are taken, it returns -EBUSY with the fifo still allocated, but the probe error path only kfree()s the port, leaking the transmit fifo. Free the fifo in the failure path of sdio_uart_add_port() itself so the function retains nothing on error.
Quoted source text, attributed separately from HOL analysis.