CVE-2026-53339

Source
https://cve.org/CVERecord?id=CVE-2026-53339
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-53339.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-53339
Downstream
Related
Published
2026-07-01T13:32:21.709Z
Modified
2026-07-22T18:14:57.655535394Z
Summary
i2c: qcom-cci: Fix NULL pointer dereference in cci_remove()
Details

In the Linux kernel, the following vulnerability has been resolved:

i2c: qcom-cci: Fix NULL pointer dereference in cci_remove()

On all modern platforms Qualcomm CCI controller provides two I2C masters, and on particular boards only one I2C master may be initialized, and in such cases the device unbinding or driver removal causes a NULL pointer dereference, because cci_halt() is called for all two I2C masters, but a completion is initialized only for the single enabled master:

% rmmod i2c-qcom-cci
Unable to handle kernel NULL pointer dereference at virtual address 0000000000000000
<snip>
Call trace:
__wait_for_common+0x194/0x1a8 (P)
wait_for_completion_timeout+0x20/0x2c
cci_remove+0xc4/0x138 [i2c_qcom_cci]
platform_remove+0x20/0x30
device_remove+0x4c/0x80
device_release_driver_internal+0x1c8/0x224
driver_detach+0x50/0x98
bus_remove_driver+0x6c/0xbc
driver_unregister+0x30/0x60
platform_driver_unregister+0x14/0x20
qcom_cci_driver_exit+0x18/0x1008 [i2c_qcom_cci]
....
Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/53xxx/CVE-2026-53339.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
e517526195de400158e05a08764d1fb61d579105
Fixed
e8669d12da0ade52adfe0abe96cd99e708abc9bd
Fixed
4d2b4a9cda6837e5ee1de1290f2e773a713b71e9
Fixed
a50b8adb9cdb9a495b0b45583956897b7411ed7a
Fixed
7107627b8b35015027201e7a095a3f6e30b4a46f
Fixed
4cd206c1d57a9370d5219f7b1fc45169d7bdf951
Fixed
a162a260c8c4db7501c65220e76913e8e351f823
Fixed
8ce7ff721a5e9d06d53ef65d01c89fce6d26d6ff
Fixed
729ac5a4b966aac42e08a94dea966f4429008548

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-53339.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.8.0
Fixed
5.10.259
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.210
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.176
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.143
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.94
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.36
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.0.13

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-53339.json"