CVE-2026-72148

Updated on 15 Aug 2026

Severity

Awaiting Analysis

Details

CVSS vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:H

Overview

About vulnerability

In the Linux kernel, the following vulnerability has been resolved:

dmaengine: dw-edma: Add spinlock to protect DONE_INT_MASK and ABORT_INT_MASK

The DONE_INT_MASK and ABORT_INT_MASK registers are shared by all DMA channels, and modifying them requires a read-modify-write sequence. Because this operation is not atomic, concurrent calls to dw_edma_v0_core_start() can introduce race conditions if two channels update these registers simultaneously.

Add a spinlock to serialize access to these registers and prevent race conditions.

[den: update dw_edma.lock comment]

Details

Affected packages:
linux @ 4.19.0 (+3 more)

Fixes