CVE-2026-93819

Summary

In the Linux kernel, the following vulnerability has been resolved:

PCI: mediatek: Protect root bus removal with rescan lock

Hold the pci_rescan_remove_lock lock while stopping and removing a root bus to avoid racing with concurrent rescan or hotplug operations triggered via sysfs. Such races may lead to use-after-free issues or system crashes.

[bhelgaas: commit log]

Affected Software

VendorProductVersion RangeStatus
LinuxLinux031337ace2d1c22a447da6390716fe92592cdd6e < c57b971765f835138fa2fce3f2a171b004cbb114affected
LinuxLinux031337ace2d1c22a447da6390716fe92592cdd6e < a568939487dcbc1a3e341208585e224be897e25eaffected
LinuxLinux031337ace2d1c22a447da6390716fe92592cdd6e < a29812a55da8d0dbeb071b26ac428c338e3fc389affected
LinuxLinux4.20affected
LinuxLinux0 < 4.20unaffected
LinuxLinux6.12.111 <= 6.12.*unaffected
LinuxLinux6.18.53 <= 6.18.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References