GHSA-5mhw-wrx9-mqjjunknown
In the Linux kernel, the following vulnerability has been resolved: media: qcom: iris: use...
🔗 CVE IDs covered (1)
📋 Description
In the Linux kernel, the following vulnerability has been resolved:
media: qcom: iris: use disable_irq() during power-off
The IRQ is registered as a threaded IRQ.
Using disable_irq_nosync() in iris_vpu_power_off() does not wait for an already queued threaded IRQ handler to complete before returning.
As a result, a threaded IRQ handler may still run after the VPU has been powered down and access hardware registers after power-off.
Replace disable_irq_nosync() with disable_irq() so the power-off path waits for any in-flight threaded IRQ handler to complete before returning.
🔗 References (5)
- https://nvd.nist.gov/vuln/detail/CVE-2026-89869
- https://git.kernel.org/stable/c/b9c2215bdedc9c532a7e9d57ec49ee1b6381f863
- https://git.kernel.org/stable/c/d7f34cbaced92069400fc5d71fefe3cb4c748da8
- https://git.kernel.org/stable/c/ff98cd2b8b54cf96bccace2f7b7e4775cdccaf02
- https://github.com/advisories/GHSA-5mhw-wrx9-mqjj