« Volver al listado

CVE-2026-89855

Estado: RecibidaSin puntuar—

In the Linux kernel, the following vulnerability has been resolved:

scsi: qla2xxx: Serialize flash version read in reset handler

The "update cache versions without reset" sysfs reset operation (0x20261) calls get_flash_version(), which reads hardware flash registers, without holding ha->optrom_mutex. The VPD update path serializes the same call under optrom_mutex, so this reset path can interleave its flash register accesses with a concurrent VPD or optrom flash operation and corrupt the reads.

Hold ha->optrom_mutex across the get_flash_version() call to match the VPD update path.

CVSS

NVD no ha asignado puntuación CVSS a esta CVE (habitual desde el cambio de política de abril de 2026).

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2026-89855",
  "cveTags": [],
  "metrics": {},
  "affected": [
    {
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
      "affectedData": [
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "8c2cf7d4e387d003259488522523807f25576427",
              "lessThan": "f1fc052f2a5890ea6dba80d50254dd6258b13386",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "8c2cf7d4e387d003259488522523807f25576427",
              "lessThan": "31bf2714abbb0aa5a8a03d15038f8920e1c74b21",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "8c2cf7d4e387d003259488522523807f25576427",
              "lessThan": "ae979c549cba684e67b6c047140f3a8d2439b298",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "8c2cf7d4e387d003259488522523807f25576427",
              "lessThan": "9cef42a073a0bdeee7fb1b47221cda222d330d2a",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "8c2cf7d4e387d003259488522523807f25576427",
              "lessThan": "75460967619eda720c9a03767729157ffd171d8c",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "8c2cf7d4e387d003259488522523807f25576427",
              "lessThan": "8d116137119371349fb09685fe05413d8fc92efe",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "8c2cf7d4e387d003259488522523807f25576427",
              "lessThan": "33735490789e5417851752974c0b1d23125559cd",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "8c2cf7d4e387d003259488522523807f25576427",
              "lessThan": "f606ed93de0c4f1e7e3618779e9fad731455314a",
              "versionType": "git"
            }
          ],
          "programFiles": [
            "drivers/scsi/qla2xxx/qla_attr.c"
          ],
          "defaultStatus": "unaffected"
        },
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "3.12"
            },
            {
              "status": "unaffected",
              "version": "0",
              "lessThan": "3.12",
              "versionType": "semver"
            },
            {
              "status": "unaffected",
              "version": "5.10.270",
              "versionType": "semver",
              "lessThanOrEqual": "5.10.*"
            },
            {
              "status": "unaffected",
              "version": "5.15.221",
              "versionType": "semver",
              "lessThanOrEqual": "5.15.*"
            },
            {
              "status": "unaffected",
              "version": "6.1.188",
              "versionType": "semver",
              "lessThanOrEqual": "6.1.*"
            },
            {
              "status": "unaffected",
              "version": "6.6.157",
              "versionType": "semver",
              "lessThanOrEqual": "6.6.*"
            },
            {
              "status": "unaffected",
              "version": "6.12.110",
              "versionType": "semver",
              "lessThanOrEqual": "6.12.*"
            },
            {
              "status": "unaffected",
              "version": "6.18.51",
              "versionType": "semver",
              "lessThanOrEqual": "6.18.*"
            },
            {
              "status": "unaffected",
              "version": "7.2.5",
              "versionType": "semver",
              "lessThanOrEqual": "7.2.*"
            },
            {
              "status": "unaffected",
              "version": "7.3-rc1",
              "versionType": "original_commit_for_fix",
              "lessThanOrEqual": "*"
            }
          ],
          "programFiles": [
            "drivers/scsi/qla2xxx/qla_attr.c"
          ],
          "defaultStatus": "affected"
        }
      ]
    }
  ],
  "published": "2026-09-16T11:16:53.313",
  "references": [
    {
      "url": "https://git.kernel.org/stable/c/31bf2714abbb0aa5a8a03d15038f8920e1c74b21",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/33735490789e5417851752974c0b1d23125559cd",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/75460967619eda720c9a03767729157ffd171d8c",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/8d116137119371349fb09685fe05413d8fc92efe",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/9cef42a073a0bdeee7fb1b47221cda222d330d2a",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/ae979c549cba684e67b6c047140f3a8d2439b298",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/f1fc052f2a5890ea6dba80d50254dd6258b13386",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/f606ed93de0c4f1e7e3618779e9fad731455314a",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    }
  ],
  "vulnStatus": "Received",
  "descriptions": [
    {
      "lang": "en",
      "value": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: qla2xxx: Serialize flash version read in reset handler\n\nThe \"update cache versions without reset\" sysfs reset operation (0x20261)\ncalls get_flash_version(), which reads hardware flash registers, without\nholding ha->optrom_mutex. The VPD update path serializes the same call\nunder optrom_mutex, so this reset path can interleave its flash register\naccesses with a concurrent VPD or optrom flash operation and corrupt the\nreads.\n\nHold ha->optrom_mutex across the get_flash_version() call to match the\nVPD update path."
    }
  ],
  "lastModified": "2026-09-16T11:16:53.313",
  "sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}