In the Linux kernel, the following vulnerability has been resolved: spi: mpc52xx: fix use-after-free on unbind The state machine work is scheduled by the interrupt handler and therefore needs to be cancelled after disabling interrupts to avoid a potential use-after-free.
Upstream advisory: https://lore.kernel.org/linux-cve-announce/2026052836-CVE-2026-46219-9b95@gregkh/T