CVE-2026-90119
Published Sep 17, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: ALSA: ice1712: Fix the card leak at probe error with the auto-cleanup snd_ice1712_probe() performs multiple initialization steps after snd_card_new(), but directly returns on failures from later steps without releasing the ALSA card, causing resource leaks when probing fails. Use snd_devm_card_new() together with scope-based cleanup via __free(snd_card_unref), and clear the card pointer after successful registration to keep it alive.
Is your site exposed to CVE-2026-90119?
Run a free security scan — no signup, results in seconds.
References
Other References
https://git.kernel.org/stable/c/24b399f51812d727dc25d7814c4d7e0cca38201e
https://git.kernel.org/stable/c/b15782627b6562f7b6d628f4699316f26340f835
https://git.kernel.org/stable/c/c5c7c7b6cfae73c46e4544a9ef08ff89231a670d
https://git.kernel.org/stable/c/d736eba9c453fedce664fdf592c8b71ecff1932b
https://git.kernel.org/stable/c/d8ac49391a1562dc784fc91e810e696284cb647e
Frequently Asked Questions
What is CVE-2026-90119? +
In the Linux kernel, the following vulnerability has been resolved:
ALSA: ice1712: Fix the card leak at probe error with the auto-cleanup
snd_ice1712_probe() performs multiple initialization steps after
snd_card_new(), but directly returns on failures from later steps
without releasing the ALSA card, causing resource leaks when
probing fails.
Use snd_devm_card_new() together with scope-based cleanup
via __free(snd_card_unref), and clear the card pointer after
successful registration to keep it alive.
How do I check if I'm vulnerable to CVE-2026-90119? +
You can use Secably's free Website Scanner to check your website for known vulnerabilities. For infrastructure scanning, use the Port Scanner to identify exposed services that may be affected. Check the vendor advisories linked above for specific patch and version information.