CVE-2026-89721
In the Linux kernel, the following vulnerability has been resolved:
phy: rockchip-samsung-dcphy: fix out-of-range max_register
The PHY register block is 64KB, so with a register stride of 4 the last accessible register sits at offset 0xfffc. max_register names 0x10000, one register past the end of the mapping: dumping the registers through the regmap debugfs interface reads beyond the ioremapped region and oopses on the unmapped page. The oops fires with the regmap lock held, so later PHY operations deadlock.
CVSS
NVD no ha asignado puntuación CVSS a esta CVE (habitual desde el cambio de política de abril de 2026).
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.21%
- Percentil entre todas las CVEs puntuadas: 10
- Fecha de la puntuación: 6/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.
Referencias
JSON original (NVD)
Mostrar
{
"id": "CVE-2026-89721",
"cveTags": [],
"metrics": {},
"affected": [
{
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
"affectedData": [
{
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"vendor": "Linux",
"product": "Linux",
"versions": [
{
"status": "affected",
"version": "b2a1a2ae7818c9d8da12bf7b1983c8b9f5fb712b",
"lessThan": "14afe18655c0951f4f85898f761bf92264e65ccd",
"versionType": "git"
},
{
"status": "affected",
"version": "b2a1a2ae7818c9d8da12bf7b1983c8b9f5fb712b",
"lessThan": "c1a62f9dcf531d56c56da2e4435386b6d264c69f",
"versionType": "git"
},
{
"status": "affected",
"version": "b2a1a2ae7818c9d8da12bf7b1983c8b9f5fb712b",
"lessThan": "4486e75ba647bd8b98fc1f053101b40caceeed4b",
"versionType": "git"
}
],
"programFiles": [
"drivers/phy/rockchip/phy-rockchip-samsung-dcphy.c"
],
"defaultStatus": "unaffected"
},
{
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"vendor": "Linux",
"product": "Linux",
"versions": [
{
"status": "affected",
"version": "6.15"
},
{
"status": "unaffected",
"version": "0",
"lessThan": "6.15",
"versionType": "semver"
},
{
"status": "unaffected",
"version": "6.18.50",
"versionType": "semver",
"lessThanOrEqual": "6.18.*"
},
{
"status": "unaffected",
"version": "7.2.4",
"versionType": "semver",
"lessThanOrEqual": "7.2.*"
},
{
"status": "unaffected",
"version": "7.3-rc1",
"versionType": "original_commit_for_fix",
"lessThanOrEqual": "*"
}
],
"programFiles": [
"drivers/phy/rockchip/phy-rockchip-samsung-dcphy.c"
],
"defaultStatus": "affected"
}
]
}
],
"published": "2026-09-11T20:20:01.090",
"references": [
{
"url": "https://git.kernel.org/stable/c/14afe18655c0951f4f85898f761bf92264e65ccd",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/4486e75ba647bd8b98fc1f053101b40caceeed4b",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/c1a62f9dcf531d56c56da2e4435386b6d264c69f",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}
],
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "In the Linux kernel, the following vulnerability has been resolved:\n\nphy: rockchip-samsung-dcphy: fix out-of-range max_register\n\nThe PHY register block is 64KB, so with a register stride of 4 the\nlast accessible register sits at offset 0xfffc. max_register names\n0x10000, one register past the end of the mapping: dumping the\nregisters through the regmap debugfs interface reads beyond the\nioremapped region and oopses on the unmapped page. The oops fires\nwith the regmap lock held, so later PHY operations deadlock."
}
],
"lastModified": "2026-09-11T20:20:01.090",
"sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}