{"api_version":"1","generated_at":"2026-08-16T17:47:58+00:00","cve":"CVE-2026-68092","urls":{"html":"https://cve.report/CVE-2026-68092","api":"https://cve.report/api/cve/CVE-2026-68092.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2026-68092","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2026-68092"},"summary":{"title":"time/jiffies: Register jiffies clocksource before usage","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntime/jiffies: Register jiffies clocksource before usage\n\nTeddy reported that a XEN HVM has a long boot delay, which was bisected to\nthe recent enhancements to the negative motion detection. It turned out\nthat the jiffies clocksource is used in early boot before it is registered,\nwhich leaves the max_delta_raw field at zero. That causes the read out to\nbe clamped to the max delta of 0, which means time is not making progress.\n\nCure it by ensuring that it is initialized before its first usage in\ntimekeeping_init().","state":"PUBLISHED","assigner":"Linux","published_at":"2026-08-10 12:17:22","updated_at":"2026-08-10 12:17:22"},"problem_types":[],"metrics":[],"references":[{"url":"https://git.kernel.org/stable/c/75b478096c6bbf57fe366f7f0a8cd5365043ffaa","name":"https://git.kernel.org/stable/c/75b478096c6bbf57fe366f7f0a8cd5365043ffaa","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/cd25e9819620aa1325897912cfb4dd89303325fe","name":"https://git.kernel.org/stable/c/cd25e9819620aa1325897912cfb4dd89303325fe","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/f24df84cbe05e4471c04ac4b921fc0340bbc7752","name":"https://git.kernel.org/stable/c/f24df84cbe05e4471c04ac4b921fc0340bbc7752","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/fe9bdea65ba231fcfb155031628bb1e8491b5fe0","name":"https://git.kernel.org/stable/c/fe9bdea65ba231fcfb155031628bb1e8491b5fe0","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-68092","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-68092","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 1a678f6829a8c931fae2b62e4c88dae743c839c9 fe9bdea65ba231fcfb155031628bb1e8491b5fe0 git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 76031d9536a076bf023bedbdb1b4317fc801dd67 cd25e9819620aa1325897912cfb4dd89303325fe git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 76031d9536a076bf023bedbdb1b4317fc801dd67 75b478096c6bbf57fe366f7f0a8cd5365043ffaa git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 76031d9536a076bf023bedbdb1b4317fc801dd67 f24df84cbe05e4471c04ac4b921fc0340bbc7752 git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 6.12.5 6.12.97 semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 6.13","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.13 semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.12.97 6.12.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.18.39 6.18.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 7.1.4 7.1.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 7.2-rc1 * original_commit_for_fix","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"cna":{"affected":[{"defaultStatus":"unaffected","product":"Linux","programFiles":["kernel/time/jiffies.c"],"repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","vendor":"Linux","versions":[{"lessThan":"fe9bdea65ba231fcfb155031628bb1e8491b5fe0","status":"affected","version":"1a678f6829a8c931fae2b62e4c88dae743c839c9","versionType":"git"},{"lessThan":"cd25e9819620aa1325897912cfb4dd89303325fe","status":"affected","version":"76031d9536a076bf023bedbdb1b4317fc801dd67","versionType":"git"},{"lessThan":"75b478096c6bbf57fe366f7f0a8cd5365043ffaa","status":"affected","version":"76031d9536a076bf023bedbdb1b4317fc801dd67","versionType":"git"},{"lessThan":"f24df84cbe05e4471c04ac4b921fc0340bbc7752","status":"affected","version":"76031d9536a076bf023bedbdb1b4317fc801dd67","versionType":"git"},{"lessThan":"6.12.97","status":"affected","version":"6.12.5","versionType":"semver"}]},{"defaultStatus":"affected","product":"Linux","programFiles":["kernel/time/jiffies.c"],"repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","vendor":"Linux","versions":[{"status":"affected","version":"6.13"},{"lessThan":"6.13","status":"unaffected","version":"0","versionType":"semver"},{"lessThanOrEqual":"6.12.*","status":"unaffected","version":"6.12.97","versionType":"semver"},{"lessThanOrEqual":"6.18.*","status":"unaffected","version":"6.18.39","versionType":"semver"},{"lessThanOrEqual":"7.1.*","status":"unaffected","version":"7.1.4","versionType":"semver"},{"lessThanOrEqual":"*","status":"unaffected","version":"7.2-rc1","versionType":"original_commit_for_fix"}]}],"cpeApplicability":[{"nodes":[{"cpeMatch":[{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"6.12.97","versionStartIncluding":"6.12.5","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"6.18.39","versionStartIncluding":"6.13","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"7.1.4","versionStartIncluding":"6.13","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"7.2-rc1","versionStartIncluding":"6.13","vulnerable":true}],"negate":false,"operator":"OR"}]}],"descriptions":[{"lang":"en","value":"In the Linux kernel, the following vulnerability has been resolved:\n\ntime/jiffies: Register jiffies clocksource before usage\n\nTeddy reported that a XEN HVM has a long boot delay, which was bisected to\nthe recent enhancements to the negative motion detection. It turned out\nthat the jiffies clocksource is used in early boot before it is registered,\nwhich leaves the max_delta_raw field at zero. That causes the read out to\nbe clamped to the max delta of 0, which means time is not making progress.\n\nCure it by ensuring that it is initialized before its first usage in\ntimekeeping_init()."}],"providerMetadata":{"dateUpdated":"2026-08-10T11:51:47.895Z","orgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","shortName":"Linux"},"references":[{"url":"https://git.kernel.org/stable/c/fe9bdea65ba231fcfb155031628bb1e8491b5fe0"},{"url":"https://git.kernel.org/stable/c/cd25e9819620aa1325897912cfb4dd89303325fe"},{"url":"https://git.kernel.org/stable/c/75b478096c6bbf57fe366f7f0a8cd5365043ffaa"},{"url":"https://git.kernel.org/stable/c/f24df84cbe05e4471c04ac4b921fc0340bbc7752"}],"title":"time/jiffies: Register jiffies clocksource before usage","x_generator":{"engine":"bippy-1.2.0"}}},"cveMetadata":{"assignerOrgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","assignerShortName":"Linux","cveId":"CVE-2026-68092","datePublished":"2026-08-10T11:51:47.895Z","dateReserved":"2026-07-30T09:28:09.367Z","dateUpdated":"2026-08-10T11:51:47.895Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.2"},"nvd":{"publishedDate":"2026-08-10 12:17:22","lastModifiedDate":"2026-08-10 12:17:22","problem_types":[],"metrics":[],"configurations":[]},"legacy_mitre":{"record":{"CveYear":"2026","CveId":"68092","Ordinal":"1","Title":"time/jiffies: Register jiffies clocksource before usage","CVE":"CVE-2026-68092","Year":"2026"},"notes":[{"CveYear":"2026","CveId":"68092","Ordinal":"1","NoteData":"In the Linux kernel, the following vulnerability has been resolved:\n\ntime/jiffies: Register jiffies clocksource before usage\n\nTeddy reported that a XEN HVM has a long boot delay, which was bisected to\nthe recent enhancements to the negative motion detection. It turned out\nthat the jiffies clocksource is used in early boot before it is registered,\nwhich leaves the max_delta_raw field at zero. That causes the read out to\nbe clamped to the max delta of 0, which means time is not making progress.\n\nCure it by ensuring that it is initialized before its first usage in\ntimekeeping_init().","Type":"Description","Title":"time/jiffies: Register jiffies clocksource before usage"}]}}}