PT-2026-93587 · Linux · Linux Kernel

CVE-2026-89946

·

Published

2026-09-16

·

Updated

2026-09-24

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the ASOC cs35l33 component where the cs35l33 runtime suspend() function powers down the codec and enables regcache cache only(true) without first quiescing the threaded IRQ registered by devm request threaded irq(). This creates a window where the cs35l33 irq thread() function can execute after live register access has been closed. During runtime power management, if the threaded handler runs while critical fault IRQs are unmasked, it may read volatile INT STATUS 1 and INT STATUS 2 registers. Despite regmap read() failures, the system can still trigger release paths for AMP SHORT RLS, CAL ERR RLS, OTE RLS, and OTW RLS.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-101153
CVE-2026-89946
OPENSUSE-SU-2026:11880-1

Affected Products

Linux Kernel