CVE-2026-90316
Published: September 19, 2026Last modified: October 6, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: drm/omap: dsi: Do not copy isr table To be able to unregister stuff from isrs, the corresponding table was copied. Nobody seems to unregister stuff that way, so it does not help. But there are stack-allocated objects passed to these isrs giving chances of UAF of these objects if irqs are unregistered while they are handled, so better do not copy that table.
Severity score breakdown
| Parameter | Value |
|---|---|
| Base score | 7.8 |
| Attack Vector | LOCAL |
| Attack complexity | LOW |
| Privileges required | LOW |
| User interaction | NONE |
| Scope | UNCHANGED |
| Confidentiality | HIGH |
| Integrity impact | HIGH |
| Availability impact | HIGH |
| Vector | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Status
| Product | Release | Package | Status |
|---|---|---|---|
| Alpaquita Linux | 23 LTS | linux-lts | Fixed (6.1.189-r0) |
| 25 LTS | linux-lts | Fixed (6.12.111-r0) | |
| Stream | linux-lts | Fixed (6.18.53-r0) |
References
- https://git.kernel.org/stable/c/2c27a84ba8d1bfed046d0067161d92001605accc
- https://git.kernel.org/stable/c/30810bdf273b4c93f8731b96a7204f33e052180d
- https://git.kernel.org/stable/c/542a6a3ec77cd29f953987f7263f32fb8acb097e
- https://git.kernel.org/stable/c/9063b30faae8ccaacf003735560df3956dbb592f
- https://git.kernel.org/stable/c/97c03b32b28a9f7f13f768f2b06e1eaafe850e66
- https://git.kernel.org/stable/c/b3cbd1451c240446ce170f514244e1cb65ec0de4
- https://git.kernel.org/stable/c/f6733460b6d483dea7bfb5cfceb11cbff31a60b7