CVE-2026-74690

Summary

In the Linux kernel, the following vulnerability has been resolved:

s390/ism: Fix UAF of sba and ieq during ism_dev_exit()

A ism interrupt handler can be active in parallel with ism_dev_exit(), accessing freed data structures.

No new interrupts will be generated after unregister_ieq(). Drain ongoing interrupt handlers by free_irq(), before freeing ism data structures.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux684b89bc39ce4f204b1a2b180f39f2eb36a6b695 < fc3021284050ecb3bba8a7851340cedcb5037928affected
LinuxLinux684b89bc39ce4f204b1a2b180f39f2eb36a6b695 < 774394d27930ec4cf4cb3eed8ab6a4d20cb2430aaffected
LinuxLinux684b89bc39ce4f204b1a2b180f39f2eb36a6b695 < b1896543ce59c4258625a35cf41e23a9a1f80ea2affected
LinuxLinux4.19affected
LinuxLinux0 < 4.19unaffected
LinuxLinux6.18.45 <= 6.18.*unaffected
LinuxLinux7.1.9 <= 7.1.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References