In the Linux kernel, the following vulnerability has been resolved:
misc: pci_endpoint_test: Free IRQs before removing the device
In pci_endpoint_test_remove(), freeing the IRQs after removing the device
creates a small race window for IRQs to be received with the test device
memory already released, causing the IRQ handler to access invalid memory,
resulting in an oops.
Free the device IRQs before removing the device to avoid this issue.
CVSS v4.0 Metrics
Exploitability
Attack VectorLocal
ComplexityLow
RequirementsPresent
PrivilegesLow
User InteractionNone
Threat
Exploit MaturityUnreported
Vulnerable System
ConfidentialityHigh
IntegrityHigh
AvailabilityHigh
Subsequent System
ConfidentialityNone
IntegrityNone
AvailabilityNone
Supplemental
SafetyNegligible
AutomatableYes
RecoveryAutomatic
Value DensityConcentrated
UrgencyMedium
Change Log
| Date | Source | Changes | Score |
|---|
| 2026-08-04 | nvd | AV: P→L, AC: H→L, PR: H→L, UI: A→N, VC: N→H, VI: N→H, VA: N→H, ncsc_hh: 40.9→28 | 0.0 → 4.4 |
| 2026-07-21 | cve.org | initial, patch: Unavailable | 0.0 |
Affected Software
| Vendor | Product | Version |
|---|
| Linux | Linux | < cdf9a7e2cdc7a5464e3cc6d0b715ba2b |
| Linux | Linux | < 4.19 |
| Linux | Linux | < 14bdee38e96c7d37ca15e7bea50411ee |
| Linux | Linux | ≥ 6.5, ≤ * |
| Linux | Linux | < c2dba13bc0c62b79a3cbe4bfe5faa322 |
| Linux | Linux | ≥ 4.19.291, ≤ 4.19.* |
| Linux | Linux | < 38d12bcf4e2ce3d285eb29644a79a54f |
| Linux | Linux | ≥ 5.4.251, ≤ 5.4.* |
| Linux | Linux | < f61b7634a3249d12b9daa36ffbdb9965 |
| Linux | Linux | ≥ 5.10.188, ≤ 5.10.* |
| Linux | Linux | ≥ 5.15.121, ≤ 5.15.* |
| Linux | Linux | ≥ 6.1.40, ≤ 6.1.* |
| Linux | Linux | ≥ 6.4.5, ≤ 6.4.* |
| Linux | Linux | < fb7f8bdb886f2ebf35ee5edaf2bf5f02 |
| Linux | Linux | < dd2210379205fcd23a9d8869b0cef90e |
| Linux | Linux | 4.19 |
Published: 2025-12-30