CVE-2026-93219
N/A
Summary
In the Linux kernel, the following vulnerability has been resolved:
clocksource/drivers/timer-sun4i: Advertise a real minimum delta
sun4i_clkevt_next_event() compensates for the timer stop/start synchronization delay by programming evt - TIMER_SYNC_TICKS into the hardware interval register. The clockevent device currently advertises TIMER_SYNC_TICKS as min_delta_ticks, so the clockevents core is allowed to call set_next_event() with evt == TIMER_SYNC_TICKS.
That programs a zero-tick interval. With oneshot/highres/nohz timer operation this can leave the next event stuck, which was observed as a boot hang on Allwinner D1 after the clockevents core started reusing forced minimum-delta events.
Advertise one extra tick instead, so the smallest event accepted by the core still programs at least one hardware tick after the synchronization compensation.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 12e1480bcb4920c1b02b3793cb48756497919a60 < 0cc4b14d7401d50e53a01f1554147ee075ee6943 | affected |
| Linux | Linux | 12e1480bcb4920c1b02b3793cb48756497919a60 < 53a3bc024b8e5d284468cce84957cded5f859f98 | affected |
| Linux | Linux | 12e1480bcb4920c1b02b3793cb48756497919a60 < 753a220084dfc4d737f2ab9eaddc9a01a397edd7 | affected |
| Linux | Linux | 12e1480bcb4920c1b02b3793cb48756497919a60 < ebba4d0aeba0e8eb3a9676380fc2652de8ab1c44 | affected |
| Linux | Linux | 12e1480bcb4920c1b02b3793cb48756497919a60 < 151eb52f8712017c8f7b00bb2305e8916cb9e3dc | affected |
| Linux | Linux | 12e1480bcb4920c1b02b3793cb48756497919a60 < bf38be01d43c4e4ca903aff7236d8486a950a252 | affected |
| Linux | Linux | 12e1480bcb4920c1b02b3793cb48756497919a60 < f0efafcdf6eec1f3361bfd8c811420198f55c8bb | affected |
| Linux | Linux | 12e1480bcb4920c1b02b3793cb48756497919a60 < d21808328225ab8cee46885bf9a0dffcefbe630e | affected |
| Linux | Linux | 3.13 | affected |
| Linux | Linux | 0 < 3.13 | unaffected |
| Linux | Linux | 5.10.270 <= 5.10.* | unaffected |
| Linux | Linux | 5.15.221 <= 5.15.* | unaffected |
| Linux | Linux | 6.1.188 <= 6.1.* | unaffected |
| Linux | Linux | 6.6.157 <= 6.6.* | unaffected |
| Linux | Linux | 6.12.109 <= 6.12.* | unaffected |
| Linux | Linux | 6.18.50 <= 6.18.* | unaffected |
| Linux | Linux | 7.2.4 <= 7.2.* | unaffected |
| Linux | Linux | 7.3-rc1 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/0cc4b14d7401d50e53a01f1554147ee075ee6943
- https://git.kernel.org/stable/c/53a3bc024b8e5d284468cce84957cded5f859f98
- https://git.kernel.org/stable/c/753a220084dfc4d737f2ab9eaddc9a01a397edd7
- https://git.kernel.org/stable/c/ebba4d0aeba0e8eb3a9676380fc2652de8ab1c44
- https://git.kernel.org/stable/c/151eb52f8712017c8f7b00bb2305e8916cb9e3dc
- https://git.kernel.org/stable/c/bf38be01d43c4e4ca903aff7236d8486a950a252
- https://git.kernel.org/stable/c/f0efafcdf6eec1f3361bfd8c811420198f55c8bb
- https://git.kernel.org/stable/c/d21808328225ab8cee46885bf9a0dffcefbe630e
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.