net: ethernet: arc: emac: quiesce interrupts before requesting IRQ

Summary

CVECVE-2026-64587
StatePUBLISHED
AssignerLinux
Source PriorityCVE Program / NVD first with legacy fallback
Published2026-08-06 08:16:33 UTC
Updated2026-08-06 08:16:33 UTC
DescriptionIn the Linux kernel, the following vulnerability has been resolved: net: ethernet: arc: emac: quiesce interrupts before requesting IRQ Normal RX/TX interrupts are enabled later, in arc_emac_open(), so probe should not see interrupt delivery in the usual case. However, hardware may still present stale or latched interrupt status left by firmware or the bootloader. If probe later unwinds after devm_request_irq() has installed the handler, such a stale interrupt can still reach arc_emac_intr() during teardown and race with release of the associated net_device. Avoid that window by putting the device into a known quiescent state before requesting the IRQ: disable all EMAC interrupt sources and clear any pending EMAC interrupt status bits. This keeps the change hardware-focused and minimal, while preventing spurious IRQ delivery from leftover state.

Vendor Declared Affected Products

SourceVendorProductVersionPlatforms
CNA Linux Linux affected e4f2379db6c6823c5d4a4c2c912df00c65de51d7 abd338da658d7faa8e26cfefc8f83f0066707564 git Not specified
CNA Linux Linux affected e4f2379db6c6823c5d4a4c2c912df00c65de51d7 5f29dd540fe5ea3c826fc8ec759ba488b31f9707 git Not specified
CNA Linux Linux affected e4f2379db6c6823c5d4a4c2c912df00c65de51d7 6fc7449773748c7b904235a09a67054d78ab1172 git Not specified
CNA Linux Linux affected e4f2379db6c6823c5d4a4c2c912df00c65de51d7 81431da777924dddaefa5c9b0ca9da4a93f9df96 git Not specified
CNA Linux Linux affected e4f2379db6c6823c5d4a4c2c912df00c65de51d7 d0f2386f529807826e7404d40a245ee428f89f62 git Not specified
CNA Linux Linux affected e4f2379db6c6823c5d4a4c2c912df00c65de51d7 8efd5dcd31e22a9308b16b107a052fcd568c0a99 git Not specified
CNA Linux Linux affected e4f2379db6c6823c5d4a4c2c912df00c65de51d7 8f9adb3605e36f75639de529bb3d66e94194a388 git Not specified
CNA Linux Linux affected e4f2379db6c6823c5d4a4c2c912df00c65de51d7 2503d08f8a2de618e5c3a8183b250ff4a2e2d52c git Not specified
CNA Linux Linux affected 3.11 Not specified
CNA Linux Linux unaffected 3.11 semver Not specified
CNA Linux Linux unaffected 5.10.253 5.10.* semver Not specified
CNA Linux Linux unaffected 5.15.203 5.15.* semver Not specified
CNA Linux Linux unaffected 6.1.167 6.1.* semver Not specified
CNA Linux Linux unaffected 6.6.130 6.6.* semver Not specified
CNA Linux Linux unaffected 6.12.78 6.12.* semver Not specified
CNA Linux Linux unaffected 6.18.19 6.18.* semver Not specified
CNA Linux Linux unaffected 6.19.9 6.19.* semver Not specified
CNA Linux Linux unaffected 7.0 * original_commit_for_fix Not specified

References

ReferenceSourceLinkTags
git.kernel.org/stable/c/8f9adb3605e36f75639de529bb3d66e94194a388 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/5f29dd540fe5ea3c826fc8ec759ba488b31f9707 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/81431da777924dddaefa5c9b0ca9da4a93f9df96 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/2503d08f8a2de618e5c3a8183b250ff4a2e2d52c 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/abd338da658d7faa8e26cfefc8f83f0066707564 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/d0f2386f529807826e7404d40a245ee428f89f62 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/8efd5dcd31e22a9308b16b107a052fcd568c0a99 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/6fc7449773748c7b904235a09a67054d78ab1172 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report