ACPI: RISC-V: Fix riscv_acpi_add_prt_dep() loop handling

Summary

CVECVE-2026-93132
StatePUBLISHED
AssignerLinux
Source PriorityCVE Program / NVD first with legacy fallback
Published2026-09-17 17:18:08 UTC
Updated2026-09-17 17:18:08 UTC
DescriptionIn the Linux kernel, the following vulnerability has been resolved: ACPI: RISC-V: Fix riscv_acpi_add_prt_dep() loop handling The loop in riscv_acpi_add_prt_dep() includes error conditions that are handled in a dubious - if not outright wrong - way, by continuining the loop (which skips and misses the entry pointer update to point to the next entry). Rewrite the loop as a for loop (that handles the continuation correctly) and wrap the condition and update statements using helper functions to make it cleaner.

Risk And Classification

EPSS: 0.002000000 probability, percentile 0.102060000 (date 2026-09-18)

Vendor Declared Affected Products

SourceVendorProductVersionPlatforms
CNA Linux Linux affected 1b173cc4bfcdcf4a49927952ba3a445c5b293723 41652ca8c6ff2b77b9780cbbb2f20f1551b9ff80 git Not specified
CNA Linux Linux affected 1b173cc4bfcdcf4a49927952ba3a445c5b293723 c9729ced165d6c5b57d99141b6632bb8711efec9 git Not specified
CNA Linux Linux affected 1b173cc4bfcdcf4a49927952ba3a445c5b293723 3fd86a5d6facb6618f63a76d499f28007cef878f git Not specified
CNA Linux Linux affected 1b173cc4bfcdcf4a49927952ba3a445c5b293723 3a56321d0aceee2a0bd80d23366401c131ff8350 git Not specified
CNA Linux Linux affected 6.12 Not specified
CNA Linux Linux unaffected 6.12 semver Not specified
CNA Linux Linux unaffected 6.12.110 6.12.* semver Not specified
CNA Linux Linux unaffected 6.18.52 6.18.* semver Not specified
CNA Linux Linux unaffected 7.2.6 7.2.* semver Not specified
CNA Linux Linux unaffected 7.3-rc1 * original_commit_for_fix Not specified

References

ReferenceSourceLinkTags
git.kernel.org/stable/c/c9729ced165d6c5b57d99141b6632bb8711efec9 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/41652ca8c6ff2b77b9780cbbb2f20f1551b9ff80 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/3fd86a5d6facb6618f63a76d499f28007cef878f 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/3a56321d0aceee2a0bd80d23366401c131ff8350 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report