CVE-2026-97909

Source
https://cve.org/CVERecord?id=CVE-2026-97909
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-97909.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-97909
Downstream
Published
2026-09-25T10:22:33Z
Modified
2026-09-26T03:48:41Z
Summary
ASoC: sti: initialize IRQ lock before requesting IRQ
Details

In the Linux kernel, the following vulnerability has been resolved:

ASoC: sti: initialize IRQ lock before requesting IRQ

uni_reader_init() registers the shared IRQ before initializing reader->irq_lock. A pending interrupt can invoke the handler while the lock is still uninitialized.

Initialize the lock before registering the IRQ so the interrupt path always sees valid lock state.

Database specific
{
    "cna_assigner":  "Linux",
    "osv_generated_from":  "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/97xxx/CVE-2026-97909.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d05d862ead8eca5e7d4ccf82d39d9189579ee5b1
Fixed
f1e7b74512164314d0550ec5b62e3d40b95b0986
Fixed
998ca92f69bc43499705016d02ffaf0663126d57
Fixed
a42dd4dae4c9191caa017cf54cc40b6bb125be65
Fixed
04405aeef4f8d7bcac6dcb1947acafdb4420c2c3

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-97909.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.11.0
Fixed
6.12.111
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.53
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-97909.json"