CVE-2026-68465

Source
https://cve.org/CVERecord?id=CVE-2026-68465
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68465.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-68465
Downstream
Published
2026-08-15T05:51:24.332Z
Modified
2026-08-16T03:48:26.254875653Z
Summary
mmc: sdhci-esdhc-imx: fix esdhc_change_pinstate() to allow default state restore
Details

In the Linux kernel, the following vulnerability has been resolved:

mmc: sdhci-esdhc-imx: fix esdhcchangepinstate() to allow default state restore

esdhcchangepinstate() checks for pins100mhz and pins200mhz at the top of the function and returns -EINVAL if either is not defined. This prevents the default case from ever being reached, which means devices with a sleep pinctrl state but without high-speed pin states (100mhz/ 200mhz) can never restore their default pin configuration.

Move the ISERR checks for pins100mhz and pins_200mhz into their respective switch cases.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68465.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
676a83855614635af3bf31ad3f8fec4031f81354
Fixed
aa276aa6cbfbc5622bf974cf9be1d579ce4a5fab
Fixed
bb72b2398c05fd0a4ebf13f49c7d599d7023d484
Fixed
5adc14cd4b905629d5b9163b3a416dcab24c7ce2

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68465.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.16.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68465.json"