-

CVE-2026-93152

nvme-apple: Use acquire/release for queue enabled state

In the Linux kernel, the following vulnerability has been resolved:

nvme-apple: Use acquire/release for queue enabled state

apple_nvme_init_queue() initializes queue state and then marks the queue
enabled. The interrupt and request paths check enabled before using that
queue state.

The old wmb() after WRITE_ONCE(enabled, true) does not publish the
earlier initialization before enabled becomes visible. Use a release store
when enabling the queue and acquire loads when testing it.

Although the shutdown-side enabled accesses are not used for publishing
queue initialization, use helpers for them as well for consistency.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 5bd2927aceba181b84286e00aa2f56e117e699c3
Version < cbe53ecd696e354bfda8173364f7595759bc562d
Status affected
Version 5bd2927aceba181b84286e00aa2f56e117e699c3
Version < 86782a72c6d8c7541813b9ddb009668468601f18
Status affected
Version 5bd2927aceba181b84286e00aa2f56e117e699c3
Version < 0e9d9fe12da779516dc3899dc9141304675f5416
Status affected
Version 5bd2927aceba181b84286e00aa2f56e117e699c3
Version < e5a79244a3c526a76d930f2ef30aff64528b0c6a
Status affected
Version 5bd2927aceba181b84286e00aa2f56e117e699c3
Version < 840ab22ffa4d859ca40a31e96fc3554688e7a035
Status affected
Version 5bd2927aceba181b84286e00aa2f56e117e699c3
Version < f61c934aa084b7440fec681be3f4b481eb5a8609
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 5.19
Status affected
Version 0
Version < 5.19
Status unaffected
Version <= 6.1.*
Version 6.1.188
Status unaffected
Version <= 6.6.*
Version 6.6.157
Status unaffected
Version <= 6.12.*
Version 6.12.110
Status unaffected
Version <= 6.18.*
Version 6.18.52
Status unaffected
Version <= 7.2.*
Version 7.2.6
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.21% 0.109
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/cbe53ecd696e354bfda8173364f7595759bc562d
https://git.kernel.org/stable/c/86782a72c6d8c7541813b9ddb009668468601f18
https://git.kernel.org/stable/c/0e9d9fe12da779516dc3899dc9141304675f5416
https://git.kernel.org/stable/c/e5a79244a3c526a76d930f2ef30aff64528b0c6a
https://git.kernel.org/stable/c/840ab22ffa4d859ca40a31e96fc3554688e7a035
https://git.kernel.org/stable/c/f61c934aa084b7440fec681be3f4b481eb5a8609