CVE-2026-72146

Source
https://cve.org/CVERecord?id=CVE-2026-72146
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72146.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-72146
Downstream
Published
2026-08-15T05:53:18Z
Modified
2026-08-21T03:30:25Z
Severity
  • 8.4 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
dmaengine: sh: rz-dmac: Move interrupt request after everything is set up
Details

In the Linux kernel, the following vulnerability has been resolved:

dmaengine: sh: rz-dmac: Move interrupt request after everything is set up

Once the interrupt is requested, the interrupt handler may run immediately. Since the IRQ handler can access channel->ch_base, which is initialized only after requesting the IRQ, this may lead to invalid memory access. Likewise, the IRQ thread may access uninitialized data (the ld_free, ld_queue, and ld_active lists), which may also lead to issues.

Request the interrupts only after everything is set up. To keep the error path simpler, use dmam_alloc_coherent() instead of dma_alloc_coherent().

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72146.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
5000d37042a61ca556fde2782ca40dbfa802ea16
Fixed
d24d53323e817d79a4bd111bd10b34dbc96e64a8
Fixed
0e0c5b3cf374ebf3c589741751e1fbc67f53ec2f
Fixed
5b12de6229d662864ee22c11d4876652b40120f0
Fixed
2a4d9e2234c3f817bb0ddbc8680d09ce9be84f93
Fixed
ec9f66c91bffdb69d309bae6dfb387562db7ebc8
Fixed
07ae600bd353b22f31a8f1007269744fafc7f123
Fixed
731712403ddb39d1a76a11abf339a0615bc85de7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72146.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.15.0
Fixed
5.15.216
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.183
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.148
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.101
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.42
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72146.json"