CVE-2026-89937
Published: September 18, 2026Last modified: September 18, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: iio: chemical: sgp30: Handle IAQ thread creation failure kthread_run() can fail and return an error pointer, but sgp_probe() stores it and returns success, so the device is registered without its IAQ thread and sgp_remove() later passes the error pointer to kthread_stop(). Return the error from probe instead.
Status
| Product | Release | Package | Status |
|---|---|---|---|
| Alpaquita Linux | 23 LTS | linux-lts | Vulnerable (6.1.182-r0) |
| 25 LTS | linux-lts | Vulnerable (6.12.103-r0) | |
| Stream | linux-lts | Vulnerable (6.18.46-r0) |
References
- https://git.kernel.org/stable/c/1135d6875d2dbda3f6ec718f3421a6ce4378bd63
- https://git.kernel.org/stable/c/2d386efb4c37a50739db19c7c8e49564fd53a570
- https://git.kernel.org/stable/c/3462c13bb0f50dec09235adb7fd04b6f617cf0cc
- https://git.kernel.org/stable/c/3c6b52b258e65a584e3f5122ed7f406bc89a946e
- https://git.kernel.org/stable/c/44d52c8b1c6da7ac1b0dffeeff6de68370746775
- https://git.kernel.org/stable/c/a5aaea17a1834d7254ff597e4d5e1bc60dfc4800
- https://git.kernel.org/stable/c/bae0316c087b1ef625844003fe37e803a13819f3
- https://git.kernel.org/stable/c/bffd0655a35402b2df8857699f8248e5a534d214