Instituto Nacional de ciberseguridad. Sección Incibe
Instituto Nacional de Ciberseguridad. Sección INCIBE-CERT

CVE-2026-68182

Gravedad:
Pendiente de análisis
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
10/08/2026
Última modificación:
19/08/2026

Descripción

*** Pendiente de traducción *** In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> comedi: comedi_parport: deal with premature interrupt<br /> <br /> Syzbot reported a general protection fault in<br /> `comedi_get_is_subdevice_running()`, which was called from the interrupt<br /> handler `parport_interrupt()` in the "comedi_parport" driver, but it<br /> does not currently have a C reproducer for the problem. It&amp;#39;s<br /> probably due to a premature interrupt for one of two reasons:<br /> <br /> 1. The driver sets up the interrupt handler before the comedi subdevices<br /> used by the interrupt handler have been allocated, but does not<br /> disable the interrupt in the parallel port&amp;#39;s CTRL register first.<br /> 2. The driver uses a user-supplied I/O port base address which Syzbot<br /> would have supplied, but it might not be backed by real parallel port<br /> hardware.<br /> <br /> Change the initialization order in the driver&amp;#39;s comedi "attach" handler<br /> (`parport_attach()`) so that the hardware registers are initialized<br /> before the interrupt handler is requested. This should prevent<br /> premature interrupts occurring for real hardware.<br /> <br /> Also add a test to the interrupt handler to ensure the comedi device is<br /> fully attached and return early if it isn&amp;#39;t.

Impacto