CVE-2026-43461: spi: amlogic: spifc-a4: Fix DMA mapping error handling
In the Linux kernel, the following vulnerability has been resolved:
spi: amlogic: spifc-a4: Fix DMA mapping error handling
Fix three bugs in amlsfcdmabuffersetup() error paths: 1. Unnecessary goto: When the first DMA mapping (sfc->daddr) fails, nothing needs cleanup. Use direct return instead of goto. 2. Double-unmap bug: When info DMA mapping failed, the code would unmap sfc->daddr inline, then fall through to outmapdata which would unmap it again, causing a double-unmap. 3. Wrong unmap size: The outmapinfo label used datalen instead of infolen when unmapping sfc->iaddr, which could lead to incorrect DMA sync behavior.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-43461?
CVE-2026-43461 is classified as a moderate severity vulnerability in the Linux kernel's SPI subsystem.
How do I fix CVE-2026-43461?
To fix CVE-2026-43461, update to the latest version of the Linux kernel that addresses this DMA mapping error handling issue.
What systems are affected by CVE-2026-43461?
CVE-2026-43461 affects Linux kernel versions utilizing the SPI subsystem with amlogic spifc-a4.
What kind of vulnerability is CVE-2026-43461?
CVE-2026-43461 is a vulnerability involving incorrect error handling in DMA mapping within the Linux kernel.
Are there any known exploits for CVE-2026-43461?
As of now, there are no publicly known exploits for CVE-2026-43461.