CVE-2026-80549

Source
https://cve.org/CVERecord?id=CVE-2026-80549
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80549.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-80549
Downstream
Published
2026-08-26T14:37:19.353Z
Modified
2026-08-28T03:47:28.906951023Z
Severity
  • 8.2 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H CVSS Calculator
Summary
s390/vfio_ccw: Move cp cleanup out of not operational
Details

In the Linux kernel, the following vulnerability has been resolved:

s390/vfio_ccw: Move cp cleanup out of not operational

The fsm_notoper() routine is called when the device has been lost, and is (by definition) no longer operational. Since this can happen asynchronously from the normal behavior of the driver, the cleanup may happen when holding other locks in the calling sequence (notably, the cio subchannel lock).

Push the cleanup of the private->cp resources to a workqueue, where it can be done out from under that lock sequence and a future patch can safely manage the locking requirements.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80549.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
204b394a23ad5e30944f23518e21e844614da2ff
Fixed
c9b85aa2cf73ea645e55e2c2670e0ddebfe1589b
Fixed
f98a9890ca42f4223d2d4c50e0660af3e012fcb4
Fixed
4e3301e2a651d742c05914f6074a25b8e41bce19
Fixed
af1759d8e6e6da9ba94f30a2f92546f406899aa7
Fixed
56100baa0eb7055b1026dfa73e696e8066ff71fd
Fixed
0c11f61a876ed6fcca53d442ed3f33ea8362a0f9

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80549.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.0.0
Fixed
6.1.185
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.153
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.105
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.46
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.10

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80549.json"