CVE-2026-89721

Source
https://cve.org/CVERecord?id=CVE-2026-89721
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89721.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-89721
Downstream
Published
2026-09-11T19:46:33Z
Modified
2026-09-13T03:47:20Z
Summary
phy: rockchip-samsung-dcphy: fix out-of-range max_register
Details

In the Linux kernel, the following vulnerability has been resolved:

phy: rockchip-samsung-dcphy: fix out-of-range max_register

The PHY register block is 64KB, so with a register stride of 4 the last accessible register sits at offset 0xfffc. max_register names 0x10000, one register past the end of the mapping: dumping the registers through the regmap debugfs interface reads beyond the ioremapped region and oopses on the unmapped page. The oops fires with the regmap lock held, so later PHY operations deadlock.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/89xxx/CVE-2026-89721.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
b2a1a2ae7818c9d8da12bf7b1983c8b9f5fb712b
Fixed
14afe18655c0951f4f85898f761bf92264e65ccd
Fixed
c1a62f9dcf531d56c56da2e4435386b6d264c69f
Fixed
4486e75ba647bd8b98fc1f053101b40caceeed4b

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89721.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.15.0
Fixed
6.18.50
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89721.json"