GHSA-g77g-v33m-x9rhMediumCVSS 5.5
In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5:...
🔗 CVE IDs covered (1)
📋 Description
In the Linux kernel, the following vulnerability has been resolved:
media: chips-media: wave5: Fix PM runtime usage count underflow
Replace pm_runtime_put_sync() with pm_runtime_dont_use_autosuspend() in
the remove path to properly pair with pm_runtime_use_autosuspend() from
probe. This allows pm_runtime_disable() to handle reference count cleanup
correctly regardless of current suspend state.
The driver calls pm_runtime_put_sync() unconditionally in remove, but the
device may already be suspended due to autosuspend configured in probe.
When autosuspend has already suspended the device, the usage count is 0,
and pm_runtime_put_sync() decrements it to -1.
This causes the following warning on module unload:
------------[ cut here ]------------
WARNING: CPU: 1 PID: 963 at kernel/kthread.c:1430
kthread_destroy_worker+0x84/0x98
...
vdec 30210000.video-codec: Runtime PM usage count underflow!
🔗 References (5)
- https://nvd.nist.gov/vuln/detail/CVE-2026-43301
- https://git.kernel.org/stable/c/0bffda02317989f8d5cdc2d4462a4110b1290cf0
- https://git.kernel.org/stable/c/3a278a55ead50db2444c8f01410c7f5a68723990
- https://git.kernel.org/stable/c/9cf4452e824c1e2d41c9c0b13cc8a32a0a7dec38
- https://github.com/advisories/GHSA-g77g-v33m-x9rh