Junglewise Threat Intelligence

CVE-2026-64461: Linux Kernel MediaTek PCIe IRQ domain leak in pcie-mediatek.c

CVE-2026-64461 · Severity: info · Published 2026-07-25

Technologies: Linux Kernel. Vendors: Linux.

Executive brief

A vulnerability was identified in the Linux kernel's MediaTek PCIe controller driver where system resources (IRQ domains) are not properly released if a hardware port fails to initialize. This results in a memory leak within the kernel. While primarily a stability issue, persistent resource leaks can eventually lead to system instability or a denial-of-service condition on affected hardware.

Technical details

A resource leak exists in drivers/pci/controller/pcie-mediatek.c within the Linux kernel. When mtk_pcie_enable_port() fails during the probe sequence, the driver calls mtk_pcie_port_free(), which removes the port structure but neglects to tear down the associated IRQ domains created by mtk_pcie_init_irq_domain(). This results in leaked IRQ domains and MSI mappings. The fix refactors the teardown logic into a per-port helper (mtk_pcie_irq_teardown_port) and ensures it is called during the error path of mtk_pcie_setup(). This issue affects MediaTek-based SoCs such as MT2712, MT7622, and EN7528.

Affected products

  • Linux Linux Kernel 5.10 and later

Timeline

  • 2026-07-25: advisory: CVE-2026-64461 published by NVD
  • 2026-07-24: patched: Fix committed to Linux stable tree

References

Related threats