CVE-2026-23470
published 2026-04-03CVE-2026-23470: In the Linux kernel, the following vulnerability has been resolved: drm/imagination: Fix deadlock in soft reset sequence The soft reset sequence is currently…
PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.09%
0.8th percentile
In the Linux kernel, the following vulnerability has been resolved:
drm/imagination: Fix deadlock in soft reset sequence
The soft reset sequence is currently executed from the threaded IRQ
handler, hence it cannot call disable_irq() which internally waits
for IRQ handlers, i.e. itself, to complete.
Use disable_irq_nosync() during a soft reset instead.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.19.10-1 (forky) | linux 6.19.10-1 (forky) |
| linux | linux | — | — |
| linux | linux | >= cc1aeedb98ad347c06ff59e991b2f94dfb4c565d < f99e8b813ae5ce8ffd62c33f5753bf0a008af4b1 | f99e8b813ae5ce8ffd62c33f5753bf0a008af4b1 |
| linux | linux | >= cc1aeedb98ad347c06ff59e991b2f94dfb4c565d < 9497b1f309436971726e229aa6026954ea7c28e9 | 9497b1f309436971726e229aa6026954ea7c28e9 |
| linux | linux | >= cc1aeedb98ad347c06ff59e991b2f94dfb4c565d < 6f39b48a2d3b1fe83f99477250cd0cd67ca1e1c6 | 6f39b48a2d3b1fe83f99477250cd0cd67ca1e1c6 |
| linux | linux | >= cc1aeedb98ad347c06ff59e991b2f94dfb4c565d < a55c2a5c8d680156495b7b1e2a9f5a3e313ba524 | a55c2a5c8d680156495b7b1e2a9f5a3e313ba524 |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 6.19.10-1 | 6.19.10-1 |
| linux | linux_kernel | >= 6.13 < 6.18.20 | 6.18.20 |
| linux | linux_kernel | >= 6.19 < 6.19.10 | 6.19.10 |
| linux | linux_kernel | >= 6.8 < 6.12.78 | 6.12.78 |
| ubuntu | linux | — | — |
| ubuntu | linux-gcp | — | — |
| ubuntu | linux-gcp-6.8 | — | — |
| ubuntu | linux-gke | — | — |
| ubuntu | linux-gkeop | — | — |
| ubuntu | linux-realtime | — | — |
| ubuntu | linux-realtime-6.8 | — | — |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
vendor_ubuntu2.0LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-6vrx-35fp-7whc: In the Linux kernel, the following vulnerability has been resolved:
drm/imagination: Fix deadlock in soft reset sequence
The soft reset sequence is
ghsa_unreviewed·2026-04-03
CVE-2026-23470 GHSA-6vrx-35fp-7whc: In the Linux kernel, the following vulnerability has been resolved:
drm/imagination: Fix deadlock in soft reset sequence
The soft reset sequence is
In the Linux kernel, the following vulnerability has been resolved:
drm/imagination: Fix deadlock in soft reset sequence
The soft reset sequence is currently executed from the threaded IRQ
handler, hence it cannot call disable_irq() which internally waits
for IRQ handlers, i.e. itself, to complete.
Use disable_irq_nosync() during a soft reset instead.
OSV
CVE-2026-23470: In the Linux kernel, the following vulnerability has been resolved: drm/imagination: Fix deadlock in soft reset sequence The soft reset sequence is cu
osv·2026-04-03
CVE-2026-23470 CVE-2026-23470: In the Linux kernel, the following vulnerability has been resolved: drm/imagination: Fix deadlock in soft reset sequence The soft reset sequence is cu
In the Linux kernel, the following vulnerability has been resolved: drm/imagination: Fix deadlock in soft reset sequence The soft reset sequence is currently executed from the threaded IRQ handler, hence it cannot call disable_irq() which internally waits for IRQ handlers, i.e. itself, to complete. Use disable_irq_nosync() during a soft reset instead.
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2026-07-20·CVSS 2.0
CVE-2026-46073 [LOW] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
It was discovered that some AMD processors did not properly clear data in
the floating point divider unit during speculative execution. A local
attacker could use this to expose sensitive information. (CVE-2025-54505)
It was discovered that some AMD Zen 2 processors did not properly isolate
shared resources in the operation cache. A local attacker could possibly
use this issue to corrupt instructions executed at a higher privilege
level, resulting in privilege escalation. (CVE-2025-54518)
It was discovered that some AMD Zen 5 processors supporting RDSEED
instruction did not properly handle entropy, potentially resulting in the
consumption of insufficiently random values. A local attacke
Red Hat
kernel: drm/imagination: Fix deadlock in soft reset sequence
vendor_redhat·2026-04-03
CVE-2026-23470 CWE-833 kernel: drm/imagination: Fix deadlock in soft reset sequence
kernel: drm/imagination: Fix deadlock in soft reset sequence
In the Linux kernel, the following vulnerability has been resolved:
drm/imagination: Fix deadlock in soft reset sequence
The soft reset sequence is currently executed from the threaded IRQ
handler, hence it cannot call disable_irq() which internally waits
for IRQ handlers, i.e. itself, to complete.
Use disable_irq_nosync() during a soft reset instead.
A flaw was found in the Linux kernel's `drm/imagination` driver. A local attacker could potentially trigger a deadlock condition during the soft reset sequence. This occurs because the soft reset sequence, when executed from a threaded Interrupt Request (IRQ) handler, attempts to disable IRQs while waiting for itself to complete. This can lead to a system hang or unresponsiveness,
Debian
CVE-2026-23470: linux - In the Linux kernel, the following vulnerability has been resolved: drm/imagina...
vendor_debian·2026
CVE-2026-23470 [LOW] CVE-2026-23470: linux - In the Linux kernel, the following vulnerability has been resolved: drm/imagina...
In the Linux kernel, the following vulnerability has been resolved: drm/imagination: Fix deadlock in soft reset sequence The soft reset sequence is currently executed from the threaded IRQ handler, hence it cannot call disable_irq() which internally waits for IRQ handlers, i.e. itself, to complete. Use disable_irq_nosync() during a soft reset instead.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved (fixed in 6.19.10-1)
sid: resolved (fixed in 6.19.10-1)
trixie: open
No detection rules found.
No public exploits indexed.
2026-04-03
Published