CVE-2026-23153
Gravedad:
Pendiente de análisis
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
14/02/2026
Última modificación:
14/02/2026
Descripción
*** Pendiente de traducción *** In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
firewire: core: fix race condition against transaction list<br />
<br />
The list of transaction is enumerated without acquiring card lock when<br />
processing AR response event. This causes a race condition bug when<br />
processing AT request completion event concurrently.<br />
<br />
This commit fixes the bug by put timer start for split transaction<br />
expiration into the scope of lock. The value of jiffies in card structure<br />
is referred before acquiring the lock.



