misc: ad525x_dpot: use driver core groups for sysfs files

Summary

CVECVE-2026-93051
StatePUBLISHED
AssignerLinux
Source PriorityCVE Program / NVD first with legacy fallback
Published2026-09-17 17:17:58 UTC
Updated2026-09-17 17:17:58 UTC
DescriptionIn the Linux kernel, the following vulnerability has been resolved: misc: ad525x_dpot: use driver core groups for sysfs files ad_dpot_probe() creates per-RDAC sysfs files manually and then optionally creates the command sysfs group. This leaves probe responsible for rolling back partial sysfs state and makes remove responsible for matching every file that probe created. Move the device attributes into driver core dev_groups for the I2C and SPI drivers and use an is_visible() callback to expose only the attributes supported by the probed device. With this shape, the driver core creates the sysfs files only after probe succeeds and removes them before the remove callback frees the driver data.

Risk And Classification

EPSS: 0.002110000 probability, percentile 0.116490000 (date 2026-09-18)

Vendor Declared Affected Products

SourceVendorProductVersionPlatforms
CNA Linux Linux affected 4eb174bee6f8623fed1af0072f1bebfc3b513a52 1d43cef1d4ff258dee3020cc29f29fd6becfd8b9 git Not specified
CNA Linux Linux affected 4eb174bee6f8623fed1af0072f1bebfc3b513a52 ddbd794e543e5f917d191f8259ce40b79c52d105 git Not specified
CNA Linux Linux affected 4eb174bee6f8623fed1af0072f1bebfc3b513a52 aa3ace3f6c66811001ffa63a53fbb01ed8109312 git Not specified
CNA Linux Linux affected 4eb174bee6f8623fed1af0072f1bebfc3b513a52 0394902df38279da7f880021b2cfc64577a60e42 git Not specified
CNA Linux Linux affected 4eb174bee6f8623fed1af0072f1bebfc3b513a52 e30f2c23c8d5620f9679e3b6656a6eb7cb1fd38b git Not specified
CNA Linux Linux affected 4eb174bee6f8623fed1af0072f1bebfc3b513a52 c7ff7a70f405a3c6fde39ed00a36d9f4fecaf3ab git Not specified
CNA Linux Linux affected 4eb174bee6f8623fed1af0072f1bebfc3b513a52 ab2fe43041412d37f88eb368a99f63f98b31d8ea git Not specified
CNA Linux Linux affected 4eb174bee6f8623fed1af0072f1bebfc3b513a52 e3a8557e88eb26278eda60bf64f2ef33ce7de8bf git Not specified
CNA Linux Linux affected 2.6.33 Not specified
CNA Linux Linux unaffected 2.6.33 semver Not specified
CNA Linux Linux unaffected 5.10.270 5.10.* semver Not specified
CNA Linux Linux unaffected 5.15.221 5.15.* semver Not specified
CNA Linux Linux unaffected 6.1.188 6.1.* semver Not specified
CNA Linux Linux unaffected 6.6.157 6.6.* semver Not specified
CNA Linux Linux unaffected 6.12.110 6.12.* semver Not specified
CNA Linux Linux unaffected 6.18.52 6.18.* semver Not specified
CNA Linux Linux unaffected 7.2.6 7.2.* semver Not specified
CNA Linux Linux unaffected 7.3-rc1 * original_commit_for_fix Not specified

References

ReferenceSourceLinkTags
git.kernel.org/stable/c/1d43cef1d4ff258dee3020cc29f29fd6becfd8b9 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/c7ff7a70f405a3c6fde39ed00a36d9f4fecaf3ab 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/ddbd794e543e5f917d191f8259ce40b79c52d105 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/ab2fe43041412d37f88eb368a99f63f98b31d8ea 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/e30f2c23c8d5620f9679e3b6656a6eb7cb1fd38b 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/0394902df38279da7f880021b2cfc64577a60e42 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/e3a8557e88eb26278eda60bf64f2ef33ce7de8bf 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/aa3ace3f6c66811001ffa63a53fbb01ed8109312 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report