fbdev: omapfb: panel-dsi-cm: initialize lock before registering display
Summary
| CVE | CVE-2026-89599 |
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-09-11 20:19:44 UTC |
| Updated | 2026-09-11 20:19:44 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved:
fbdev: omapfb: panel-dsi-cm: initialize lock before registering display
dsicm_probe() registers the display before initializing ddata->lock.
Once omapdss_register_display() publishes the display, another consumer
can reach a dsicm callback that takes this mutex while it is still
uninitialized.
Initialize the mutex before registering the display so the published
callbacks always see a valid lock. |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|
| CNA |
Linux |
Linux |
affected f76ee892a99e68b55402b8d4b8aeffcae2aff34d 2c3f8c9c995db185284b079f39177e85b2258176 git |
Not specified |
| CNA |
Linux |
Linux |
affected f76ee892a99e68b55402b8d4b8aeffcae2aff34d 76818e81cfcae33b09b739de09162c7d8d89bf0b git |
Not specified |
| CNA |
Linux |
Linux |
affected f76ee892a99e68b55402b8d4b8aeffcae2aff34d 09db79078f25c048cfb5d7849795c70415ab8574 git |
Not specified |
| CNA |
Linux |
Linux |
affected f76ee892a99e68b55402b8d4b8aeffcae2aff34d f8e43fe0f22b7137ce456e6fe3581d3098174f74 git |
Not specified |
| CNA |
Linux |
Linux |
affected 4.5 |
Not specified |
| CNA |
Linux |
Linux |
unaffected 4.5 semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.12.109 6.12.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.18.50 6.18.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.2.4 7.2.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.3-rc1 * original_commit_for_fix |
Not specified |
References
| Reference | Source | Link | Tags |
|---|
| git.kernel.org/stable/c/76818e81cfcae33b09b739de09162c7d8d89bf0b |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/f8e43fe0f22b7137ce456e6fe3581d3098174f74 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/09db79078f25c048cfb5d7849795c70415ab8574 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/2c3f8c9c995db185284b079f39177e85b2258176 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.