cbcvebase.
CVE-2026-46134
published 2026-05-28

CVE-2026-46134: In the Linux kernel, the following vulnerability has been resolved: platform/chrome: cros_ec_typec: Init mutex in Thunderbolt registration…

In the Linux kernel, the following vulnerability has been resolved: platform/chrome: cros_ec_typec: Init mutex in Thunderbolt registration cros_typec_register_thunderbolt() missed initializing the `adata->lock` mutex. This leads to a NULL dereference when the mutex is later acquired (e.g. in cros_typec_altmode_work()). Initialize the mutex in cros_typec_register_thunderbolt() to fix the issue.

Affected

5 ranges
VendorProductVersion rangeFixed in
linuxlinux
linuxlinux>= 3b00be26b16ad72c85624ada08cbae2d2c57b6e9 < 23ae72e8c2f1c1d1da8cbd479320ddcfcc9c743523ae72e8c2f1c1d1da8cbd479320ddcfcc9c7435
linuxlinux>= 3b00be26b16ad72c85624ada08cbae2d2c57b6e9 < 3b13d5883a097f538fccbab1c61c95546d29621f3b13d5883a097f538fccbab1c61c95546d29621f
linuxlinux>= 3b00be26b16ad72c85624ada08cbae2d2c57b6e9 < 525cb7ba6661074c1c5cc3772bccc6afab6791ef525cb7ba6661074c1c5cc3772bccc6afab6791ef
linuxlinux_kernel