CVE-2026-68182
In the Linux kernel, the following vulnerability has been resolved:
comedi: comedi_parport: deal with premature interrupt
Syzbot reported a general protection fault in `comedi_get_is_subdevice_running()`, which was called from the interrupt handler `parport_interrupt()` in the "comedi_parport" driver, but it does not currently have a C reproducer for the problem. It's probably due to a premature interrupt for one of two reasons:
Change the initialization order in the driver's comedi "attach" handler (`parport_attach()`) so that the hardware registers are initialized before the interrupt handler is requested. This should prevent premature interrupts occurring for real hardware.
Leer descripción completaMostrar menos
Also add a test to the interrupt handler to ensure the comedi device is fully attached and return early if it isn't.
Detalles técnicos trazas, registros y código del informe original
1. The driver sets up the interrupt handler before the comedi subdevices used by the interrupt handler have been allocated, but does not disable the interrupt in the parallel port's CTRL register first. 2. The driver uses a user-supplied I/O port base address which Syzbot would have supplied, but it might not be backed by real parallel port hardware.
CVSS
NVD no ha asignado puntuación CVSS a esta CVE (habitual desde el cambio de política de abril de 2026).
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.22%
- Percentil entre todas las CVEs puntuadas: 11
- Fecha de la puntuación: 6/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.
Referencias
- https://git.kernel.org/stable/c/086a9ae3c5df63ec11033a8c0b3f6a1fd295ddd1
- https://git.kernel.org/stable/c/17221216ae8ce6a24e8a4e787382e3ebc81b88a8
- https://git.kernel.org/stable/c/48ef18e5eb6b8a9c546038b2ab89a841fcd97fe7
- https://git.kernel.org/stable/c/5d059ce0e6a2f6f8b97273499d47b8f917097b48
- https://git.kernel.org/stable/c/6ed34611e569fc1a1169905c5228fd0eb2806c1b
- https://git.kernel.org/stable/c/a88b25db815ff6edace81b0bb0f4a201133bd215
- https://git.kernel.org/stable/c/b061bb4dca49fd93063359d3805387235818778c
- https://git.kernel.org/stable/c/cf26dd2d841583c54a87005c4934b92fddb930c3
JSON original (NVD)
Mostrar
{
"id": "CVE-2026-68182",
"cveTags": [],
"metrics": {},
"affected": [
{
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
"affectedData": [
{
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"vendor": "Linux",
"product": "Linux",
"versions": [
{
"status": "affected",
"version": "241ab6ad7108e51c67881f7881c5e46f0400cdb1",
"lessThan": "6ed34611e569fc1a1169905c5228fd0eb2806c1b",
"versionType": "git"
},
{
"status": "affected",
"version": "241ab6ad7108e51c67881f7881c5e46f0400cdb1",
"lessThan": "48ef18e5eb6b8a9c546038b2ab89a841fcd97fe7",
"versionType": "git"
},
{
"status": "affected",
"version": "241ab6ad7108e51c67881f7881c5e46f0400cdb1",
"lessThan": "a88b25db815ff6edace81b0bb0f4a201133bd215",
"versionType": "git"
},
{
"status": "affected",
"version": "241ab6ad7108e51c67881f7881c5e46f0400cdb1",
"lessThan": "b061bb4dca49fd93063359d3805387235818778c",
"versionType": "git"
},
{
"status": "affected",
"version": "241ab6ad7108e51c67881f7881c5e46f0400cdb1",
"lessThan": "086a9ae3c5df63ec11033a8c0b3f6a1fd295ddd1",
"versionType": "git"
},
{
"status": "affected",
"version": "241ab6ad7108e51c67881f7881c5e46f0400cdb1",
"lessThan": "cf26dd2d841583c54a87005c4934b92fddb930c3",
"versionType": "git"
},
{
"status": "affected",
"version": "241ab6ad7108e51c67881f7881c5e46f0400cdb1",
"lessThan": "5d059ce0e6a2f6f8b97273499d47b8f917097b48",
"versionType": "git"
},
{
"status": "affected",
"version": "241ab6ad7108e51c67881f7881c5e46f0400cdb1",
"lessThan": "17221216ae8ce6a24e8a4e787382e3ebc81b88a8",
"versionType": "git"
}
],
"programFiles": [
"drivers/comedi/drivers/comedi_parport.c"
],
"defaultStatus": "unaffected"
},
{
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"vendor": "Linux",
"product": "Linux",
"versions": [
{
"status": "affected",
"version": "2.6.29"
},
{
"status": "unaffected",
"version": "0",
"lessThan": "2.6.29",
"versionType": "semver"
},
{
"status": "unaffected",
"version": "5.10.265",
"versionType": "semver",
"lessThanOrEqual": "5.10.*"
},
{
"status": "unaffected",
"version": "5.15.216",
"versionType": "semver",
"lessThanOrEqual": "5.15.*"
},
{
"status": "unaffected",
"version": "6.1.183",
"versionType": "semver",
"lessThanOrEqual": "6.1.*"
},
{
"status": "unaffected",
"version": "6.6.148",
"versionType": "semver",
"lessThanOrEqual": "6.6.*"
},
{
"status": "unaffected",
"version": "6.12.101",
"versionType": "semver",
"lessThanOrEqual": "6.12.*"
},
{
"status": "unaffected",
"version": "6.18.42",
"versionType": "semver",
"lessThanOrEqual": "6.18.*"
},
{
"status": "unaffected",
"version": "7.1.6",
"versionType": "semver",
"lessThanOrEqual": "7.1.*"
},
{
"status": "unaffected",
"version": "7.2",
"versionType": "original_commit_for_fix",
"lessThanOrEqual": "*"
}
],
"programFiles": [
"drivers/comedi/drivers/comedi_parport.c"
],
"defaultStatus": "affected"
}
]
}
],
"published": "2026-08-10T13:20:05.250",
"references": [
{
"url": "https://git.kernel.org/stable/c/086a9ae3c5df63ec11033a8c0b3f6a1fd295ddd1",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/17221216ae8ce6a24e8a4e787382e3ebc81b88a8",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/48ef18e5eb6b8a9c546038b2ab89a841fcd97fe7",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/5d059ce0e6a2f6f8b97273499d47b8f917097b48",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/6ed34611e569fc1a1169905c5228fd0eb2806c1b",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/a88b25db815ff6edace81b0bb0f4a201133bd215",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/b061bb4dca49fd93063359d3805387235818778c",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/cf26dd2d841583c54a87005c4934b92fddb930c3",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}
],
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "In the Linux kernel, the following vulnerability has been resolved:\n\ncomedi: comedi_parport: deal with premature interrupt\n\nSyzbot reported a general protection fault in\n`comedi_get_is_subdevice_running()`, which was called from the interrupt\nhandler `parport_interrupt()` in the \"comedi_parport\" driver, but it\ndoes not currently have a C reproducer for the problem. It's\nprobably due to a premature interrupt for one of two reasons:\n\n1. The driver sets up the interrupt handler before the comedi subdevices\n used by the interrupt handler have been allocated, but does not\n disable the interrupt in the parallel port's CTRL register first.\n2. The driver uses a user-supplied I/O port base address which Syzbot\n would have supplied, but it might not be backed by real parallel port\n hardware.\n\nChange the initialization order in the driver's comedi \"attach\" handler\n(`parport_attach()`) so that the hardware registers are initialized\nbefore the interrupt handler is requested. This should prevent\npremature interrupts occurring for real hardware.\n\nAlso add a test to the interrupt handler to ensure the comedi device is\nfully attached and return early if it isn't."
}
],
"lastModified": "2026-08-19T17:20:34.343",
"sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}