-
CVE-2026-90273
- EPSS 0.16%
- Veröffentlicht 17.09.2026 16:08:06
- Zuletzt bearbeitet 17.09.2026 17:17:23
- Erkennungen
coresight: etm4x: missing cscfg_csdev_disable_active_config() in perf enable
In the Linux kernel, the following vulnerability has been resolved: coresight: etm4x: missing cscfg_csdev_disable_active_config() in perf enable In the perf enable path, there are missing cases where cscfg_csdev_disable_active_config() is not called: - Branch broadcast is selected but not supported by the hardware - etm4_enable_hw() fails This can lead to a leak of config_desc->active_cnt. Fix this by properly calling cscfg_csdev_disable_active_config() in these error paths.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version
810ac401db1fe432020d7936a199591000de8279
Version <
7e4f2702bbadbde887a5d8897297720a7f037ee5
Status
affected
Version
810ac401db1fe432020d7936a199591000de8279
Version <
0a47f0be6557b4a851addd430383a4dc7ee08752
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
5.15
Status
affected
Version
0
Version <
5.15
Status
unaffected
Version <=
7.2.*
Version
7.2.6
Status
unaffected
Version <=
*
Version
7.3-rc1
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.16% | 0.051 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|
https://git.kernel.org/stable/c/7e4f2702bbadbde887a5d8897297720a7f037ee5
https://git.kernel.org/stable/c/0a47f0be6557b4a851addd430383a4dc7ee08752