{"api_version":"1","generated_at":"2026-10-03T01:57:51+00:00","cve":"CVE-2026-93083","urls":{"html":"https://cve.report/CVE-2026-93083","api":"https://cve.report/api/cve/CVE-2026-93083.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2026-93083","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2026-93083"},"summary":{"title":"firmware: arm_scmi: Unwind TX receiver mailbox setup failure","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nfirmware: arm_scmi: Unwind TX receiver mailbox setup failure\n\nmailbox_chan_setup() can request an additional unidirectional TX\nreceiver channel after successfully acquiring the primary channel. If\nthat second request fails, the function returns immediately and leaves\nthe primary channel allocated.\n\nUnwind the primary mailbox channel before returning the error so probe\ndeferral or other setup failures do not leave the channel busy for later\nprobe attempts.","state":"PUBLISHED","assigner":"Linux","published_at":"2026-09-17 17:18:02","updated_at":"2026-09-17 17:18:02"},"problem_types":[],"metrics":[],"references":[{"url":"https://git.kernel.org/stable/c/6f7c06744d53dc8e047725d411d7f915d9ec35ae","name":"https://git.kernel.org/stable/c/6f7c06744d53dc8e047725d411d7f915d9ec35ae","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/717b8e972a667fc1bebe63cbcf0d58e692cbb491","name":"https://git.kernel.org/stable/c/717b8e972a667fc1bebe63cbcf0d58e692cbb491","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/9958f55eace8b43713c9fc54dcf90e7cdefee413","name":"https://git.kernel.org/stable/c/9958f55eace8b43713c9fc54dcf90e7cdefee413","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://git.kernel.org/stable/c/babb017cf5e4600c94c23ea87175a0380235a3ee","name":"https://git.kernel.org/stable/c/babb017cf5e4600c94c23ea87175a0380235a3ee","refsource":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","tags":[],"title":"","mime":"","httpstatus":"","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-93083","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-93083","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 9f68ff79ec2cb303f360a35eef5dd8f1f0f817e1 babb017cf5e4600c94c23ea87175a0380235a3ee git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 9f68ff79ec2cb303f360a35eef5dd8f1f0f817e1 717b8e972a667fc1bebe63cbcf0d58e692cbb491 git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 9f68ff79ec2cb303f360a35eef5dd8f1f0f817e1 9958f55eace8b43713c9fc54dcf90e7cdefee413 git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 9f68ff79ec2cb303f360a35eef5dd8f1f0f817e1 6f7c06744d53dc8e047725d411d7f915d9ec35ae git","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"affected 6.4","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.4 semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.12.110 6.12.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 6.18.52 6.18.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 7.2.6 7.2.* semver","platforms":[]},{"source":"CNA","vendor":"Linux","product":"Linux","version":"unaffected 7.3-rc1 * original_commit_for_fix","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[],"vendor_comments":[],"enrichments":{"kev":null,"epss":{"cve_year":"2026","cve_id":"93083","cve":"CVE-2026-93083","epss":"0.001680000","percentile":"0.065040000","score_date":"2026-09-18","updated_at":"2026-09-19 00:06:17"},"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"cna":{"affected":[{"defaultStatus":"unaffected","product":"Linux","programFiles":["drivers/firmware/arm_scmi/transports/mailbox.c"],"repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","vendor":"Linux","versions":[{"lessThan":"babb017cf5e4600c94c23ea87175a0380235a3ee","status":"affected","version":"9f68ff79ec2cb303f360a35eef5dd8f1f0f817e1","versionType":"git"},{"lessThan":"717b8e972a667fc1bebe63cbcf0d58e692cbb491","status":"affected","version":"9f68ff79ec2cb303f360a35eef5dd8f1f0f817e1","versionType":"git"},{"lessThan":"9958f55eace8b43713c9fc54dcf90e7cdefee413","status":"affected","version":"9f68ff79ec2cb303f360a35eef5dd8f1f0f817e1","versionType":"git"},{"lessThan":"6f7c06744d53dc8e047725d411d7f915d9ec35ae","status":"affected","version":"9f68ff79ec2cb303f360a35eef5dd8f1f0f817e1","versionType":"git"}]},{"defaultStatus":"affected","product":"Linux","programFiles":["drivers/firmware/arm_scmi/transports/mailbox.c"],"repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","vendor":"Linux","versions":[{"status":"affected","version":"6.4"},{"lessThan":"6.4","status":"unaffected","version":"0","versionType":"semver"},{"lessThanOrEqual":"6.12.*","status":"unaffected","version":"6.12.110","versionType":"semver"},{"lessThanOrEqual":"6.18.*","status":"unaffected","version":"6.18.52","versionType":"semver"},{"lessThanOrEqual":"7.2.*","status":"unaffected","version":"7.2.6","versionType":"semver"},{"lessThanOrEqual":"*","status":"unaffected","version":"7.3-rc1","versionType":"original_commit_for_fix"}]}],"cpeApplicability":[{"nodes":[{"cpeMatch":[{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"6.12.110","versionStartIncluding":"6.4","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"6.18.52","versionStartIncluding":"6.4","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"7.2.6","versionStartIncluding":"6.4","vulnerable":true},{"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionEndExcluding":"7.3-rc1","versionStartIncluding":"6.4","vulnerable":true}],"negate":false,"operator":"OR"}]}],"descriptions":[{"lang":"en","value":"In the Linux kernel, the following vulnerability has been resolved:\n\nfirmware: arm_scmi: Unwind TX receiver mailbox setup failure\n\nmailbox_chan_setup() can request an additional unidirectional TX\nreceiver channel after successfully acquiring the primary channel. If\nthat second request fails, the function returns immediately and leaves\nthe primary channel allocated.\n\nUnwind the primary mailbox channel before returning the error so probe\ndeferral or other setup failures do not leave the channel busy for later\nprobe attempts."}],"providerMetadata":{"dateUpdated":"2026-09-17T16:11:02.997Z","orgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","shortName":"Linux"},"references":[{"url":"https://git.kernel.org/stable/c/babb017cf5e4600c94c23ea87175a0380235a3ee"},{"url":"https://git.kernel.org/stable/c/717b8e972a667fc1bebe63cbcf0d58e692cbb491"},{"url":"https://git.kernel.org/stable/c/9958f55eace8b43713c9fc54dcf90e7cdefee413"},{"url":"https://git.kernel.org/stable/c/6f7c06744d53dc8e047725d411d7f915d9ec35ae"}],"title":"firmware: arm_scmi: Unwind TX receiver mailbox setup failure","x_generator":{"engine":"bippy-1.2.0"}}},"cveMetadata":{"assignerOrgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","assignerShortName":"Linux","cveId":"CVE-2026-93083","datePublished":"2026-09-17T16:11:02.997Z","dateReserved":"2026-09-17T15:57:05.662Z","dateUpdated":"2026-09-17T16:11:02.997Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.2"},"nvd":{"publishedDate":"2026-09-17 17:18:02","lastModifiedDate":"2026-09-17 17:18:02","problem_types":[],"metrics":[],"configurations":[]},"legacy_mitre":{"record":{"CveYear":"2026","CveId":"93083","Ordinal":"1","Title":"firmware: arm_scmi: Unwind TX receiver mailbox setup failure","CVE":"CVE-2026-93083","Year":"2026"},"notes":[{"CveYear":"2026","CveId":"93083","Ordinal":"1","NoteData":"In the Linux kernel, the following vulnerability has been resolved:\n\nfirmware: arm_scmi: Unwind TX receiver mailbox setup failure\n\nmailbox_chan_setup() can request an additional unidirectional TX\nreceiver channel after successfully acquiring the primary channel. If\nthat second request fails, the function returns immediately and leaves\nthe primary channel allocated.\n\nUnwind the primary mailbox channel before returning the error so probe\ndeferral or other setup failures do not leave the channel busy for later\nprobe attempts.","Type":"Description","Title":"firmware: arm_scmi: Unwind TX receiver mailbox setup failure"}]}}}