{"schema_version":"1.7.5","id":"CVE-2026-31651","published":"2026-04-24T14:45:03.905Z","modified":"2026-07-22T18:14:48.009223574Z","related":["SUSE-SU-2026:3130-1","SUSE-SU-2026:3166-1"],"summary":"mmc: vub300: fix NULL-deref on disconnect","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nmmc: vub300: fix NULL-deref on disconnect\n\nMake sure to deregister the controller before dropping the reference to\nthe driver data on disconnect to avoid NULL-pointer dereferences or\nuse-after-free.","affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"88095e7b473a3d9ec3b9c60429576e9cbd327c89"},{"fixed":"6446516e626ce7c44bdadbcbb3d7677a2c52ce93"},{"fixed":"ba3b9429de94958dc0060d9816a915dd75c34919"},{"fixed":"517b58e1d067115f80d198feee10192da4c424d0"},{"fixed":"6468cab1173f44f7a4b7a05ce8abfdfd1ce1557a"},{"fixed":"53f2642d77ab5f1f303388bff5500363c6cf962c"},{"fixed":"c83a282615d8f7ba28cebddd54600b419d562d82"},{"fixed":"8d09e75759cb2afc0732acfb5a14a93c03805a61"},{"fixed":"dff34ef879c5e73298443956a8b391311ba78d57"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-31651.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"3.0.0"},{"fixed":"5.10.253"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.203"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.1.169"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.135"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.12.82"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"6.18.23"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.19.0"},{"fixed":"6.19.13"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-31651.json"}}],"references":[{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-019113.html"},{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-082556.html"},{"type":"WEB","url":"https://git.kernel.org/stable/c/517b58e1d067115f80d198feee10192da4c424d0"},{"type":"WEB","url":"https://git.kernel.org/stable/c/53f2642d77ab5f1f303388bff5500363c6cf962c"},{"type":"WEB","url":"https://git.kernel.org/stable/c/6446516e626ce7c44bdadbcbb3d7677a2c52ce93"},{"type":"WEB","url":"https://git.kernel.org/stable/c/6468cab1173f44f7a4b7a05ce8abfdfd1ce1557a"},{"type":"WEB","url":"https://git.kernel.org/stable/c/8d09e75759cb2afc0732acfb5a14a93c03805a61"},{"type":"WEB","url":"https://git.kernel.org/stable/c/ba3b9429de94958dc0060d9816a915dd75c34919"},{"type":"WEB","url":"https://git.kernel.org/stable/c/c83a282615d8f7ba28cebddd54600b419d562d82"},{"type":"WEB","url":"https://git.kernel.org/stable/c/dff34ef879c5e73298443956a8b391311ba78d57"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/31xxx/CVE-2026-31651.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-31651"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/31xxx/CVE-2026-31651.json"}}