Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-88568.json
JSON Data
https://api.osv.dev/v1/vulns/AZL-88568
Upstream
Published
2026-05-27T14:17:13Z
Modified
2026-08-29T05:27:27Z
Summary
CVE-2026-45963 affecting package kernel 6.6.150.1-1
Details

In the Linux kernel, the following vulnerability has been resolved:

ASoC: nau8821: Cancel delayed work on component remove

Attempting to unload the driver while a jack detection work is pending would likely crash the kernel when it is eventually scheduled for execution:

[ 1984.896308] BUG: unable to handle page fault for address: ffffffffc10c2a20 [...] [ 1984.896388] Hardware name: Valve Jupiter/Jupiter, BIOS F7A0131 01/30/2024 [ 1984.896396] Workqueue: events nau8821jdetwork [sndsocnau8821] [ 1984.896414] RIP: 0010:__mutexlock+0x9f/0x11d0 [...] [ 1984.896504] Call Trace: [ 1984.896511] <TASK> [ 1984.896524] ? sndsocdapmdisablepin+0x26/0x60 [sndsoccore] [ 1984.896572] ? sndsocdapmdisablepin+0x26/0x60 [sndsoccore] [ 1984.896596] sndsocdapmdisablepin+0x26/0x60 [sndsoccore] [ 1984.896622] nau8821jdetwork+0xeb/0x1e0 [sndsocnau8821] [ 1984.896636] processonework+0x211/0x590 [ 1984.896649] ? srsoreturnthunk+0x5/0x5f [ 1984.896670] workerthread+0x1cd/0x3a0

Cancel unscheduled jdet_work or wait for its execution to finish before the component driver gets removed.

References

Affected packages

Azure Linux:3 / kernel

Package

Name
kernel
Purl
pkg:rpm/azure-linux/kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Last affected
6.6.150.1-1

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-88568.json"