CVE-2026-72152

Summary

In the Linux kernel, the following vulnerability has been resolved:

tpm: tpm_tis_spi: Use wait_woken() in wait_for_tmp_stat()

wait_event_interruptible_timeout() evaluates its condition after setting the current task state to TASK_INTERRUPTIBLE.

With CONFIG_DEBUG_ATOMIC_SLEEP this triggers a warning when the IRQ wait path is used:

tpm_tis_status()
  tpm_tis_spi_read_bytes()
    tpm_tis_spi_transfer_full()
      spi_bus_lock()
        mutex_lock()

Address this with the following measures:

  1. Call wait_tpm_stat_cond() only while tasking is running.
  2. Use wait_woken() to wait for changes.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux1a339b658d9dbe1471f67b78237cf8fa08bbbeb5 < c9acbe38797bc1aa3c22a1ab72452e210af6e0ffaffected
LinuxLinux1a339b658d9dbe1471f67b78237cf8fa08bbbeb5 < 6b068a97958aa00a901a9b5083d74114b21f7b66affected
LinuxLinux1a339b658d9dbe1471f67b78237cf8fa08bbbeb5 < bb63a0530e8e6de3aaf29cd5ba487db2490128efaffected
LinuxLinux1a339b658d9dbe1471f67b78237cf8fa08bbbeb5 < ba33b4f9d3423accd2c91a0b0b0680cd589922f2affected
LinuxLinux1a339b658d9dbe1471f67b78237cf8fa08bbbeb5 < 4bb3e1bc142dc9c3240ceed1b3ab031aa9cb1723affected
LinuxLinux1a339b658d9dbe1471f67b78237cf8fa08bbbeb5 < c0c9cfb3b75def8bf200a2d4db09015806acfeafaffected
LinuxLinuxcd4ae0b05126cc9461a2e50ccb745e5583cc91e2affected
LinuxLinuxcf503dbe5c22c6ab9797e1cf864a11597d711c3aaffected
LinuxLinuxd229e7ecc0cb29996688f0fa98c5eb6128b81e3aaffected
LinuxLinux4.9.128 < 4.10affected
LinuxLinux4.14.71 < 4.15affected
LinuxLinux4.18.9 < 4.19affected
LinuxLinux4.19affected
LinuxLinux0 < 4.19unaffected
LinuxLinux6.1.178 <= 6.1.*unaffected
LinuxLinux6.6.145 <= 6.6.*unaffected
LinuxLinux6.12.97 <= 6.12.*unaffected
LinuxLinux6.18.40 <= 6.18.*unaffected
LinuxLinux7.1.5 <= 7.1.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References