CVE-2026-90147
N/A
N/A
Summary
In the Linux kernel, the following vulnerability has been resolved:
clk: devres: fix cleanup in devm_clk_get_optional_enabled_with_rate()
devm_clk_get_optional_enabled_with_rate() registers its cleanup action before setting the clock rate. If setting the rate fails, it attempts to disable and unprepare a clock that was never enabled. This issue was spotted while reviewing "rust: clk: add devres-managed clks" 1.
Register the cleanup action only after successfully preparing and enabling the clock.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 9934a1bd45b2b03f6d1204a6ae2780d3b009799f < 9a365f41fe0f227ef5a269e240233bd0bffc66c9 | affected |
| Linux | Linux | 9934a1bd45b2b03f6d1204a6ae2780d3b009799f < 9d4843f1051259854f724e9cdc5b9eac56327037 | affected |
| Linux | Linux | 9934a1bd45b2b03f6d1204a6ae2780d3b009799f < 647157fecb42b72d930e7b7d0bfbc5f2db9a858a | affected |
| Linux | Linux | 9934a1bd45b2b03f6d1204a6ae2780d3b009799f < 0d4d262c1664365e17e0a5ba2ab79f4db484b44e | affected |
| Linux | Linux | 6.12 | affected |
| Linux | Linux | 0 < 6.12 | unaffected |
| Linux | Linux | 6.12.110 <= 6.12.* | unaffected |
| Linux | Linux | 6.18.52 <= 6.18.* | unaffected |
| Linux | Linux | 7.2.6 <= 7.2.* | unaffected |
| Linux | Linux | 7.3-rc1 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/9a365f41fe0f227ef5a269e240233bd0bffc66c9
- https://git.kernel.org/stable/c/9d4843f1051259854f724e9cdc5b9eac56327037
- https://git.kernel.org/stable/c/647157fecb42b72d930e7b7d0bfbc5f2db9a858a
- https://git.kernel.org/stable/c/0d4d262c1664365e17e0a5ba2ab79f4db484b44e
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.