CVE-2026-93820: vulnerability in Linux
PCI: rockchip: Protect root bus removal with rescan lock
Published · Updated
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 0.2%
exploitation probability
0.2%top 94% of all CVEs
observed exploitation
nono source reports it
In the Linux kernel, the following vulnerability has been resolved:
PCI: rockchip: Protect root bus removal with rescan lock
Hold the pci_rescan_remove_lock lock while stopping and removing a root bus
to avoid racing with concurrent rescan or hotplug operations triggered via
sysfs. Such races may lead to use-after-free issues or system crashes.
[bhelgaas: commit log]
Affected products
Linux · LinuxRelated CVEs — Linux
In the same product, most dangerous first.
CVE-2024-53197HIGHALSA: usb-audio: Fix potential out-of-bound accesses for Extigy and Mbox devicesEPSS 4.1%KEVCVE-2026-31431HIGHcrypto: algif_aead - Revert to operating out-of-placeEPSS 3.4%KEVCVE-2024-53104HIGHmedia: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_formatEPSS 3.4%KEVCVE-2025-39682CRITICALtls: fix handling of zero-length records on the rx_listEPSS 2.9%KEVCVE-2024-36971HIGHnet: fix __dst_negative_advice() raceEPSS 2.7%KEVCVE-2024-53150HIGHALSA: usb-audio: Fix out of bounds reads when finding clock sourcesEPSS 1.4%KEV
References
https://git.kernel.org/stable/c/025308e7c9cd10112b73558c9f63f8f7285fa726https://git.kernel.org/stable/c/0bd9611587bb494c33566d825fe34b2705e4b167https://git.kernel.org/stable/c/5d566ac3a055f0a6f4890ff0af7cfd7e8ed89652https://git.kernel.org/stable/c/9b19201f57d87c4d0777621275dbc59bff41b7f2https://git.kernel.org/stable/c/ac47d42901859edb504a2890a3a5709c86dbc0c3https://git.kernel.org/stable/c/eaeb9bed3641741aceb0add84a97023bed61e748https://git.kernel.org/stable/c/ebca7e5947720e9d4bd918af3e17720270c50744