Description
In the Linux kernel, the following vulnerability has been resolved:

power: supply: max17040: propagate register read errors

max17040_get_vcell() and max17040_get_soc() ignore errors returned by
regmap_read(). When an I2C transfer fails, the uninitialized register
value is converted and reported to userspace as a valid voltage or state
of charge. The polling worker can also replace the cached state of charge
with the bogus value and emit a spurious change event.

Propagate read errors through the power supply get_property callback and
keep the last valid cached state of charge when polling fails.
Published: 2026-09-11
Score: 5.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Faulty power supply data
Action: Apply Patch
AI Analysis

Impact

The Linux kernel power supply driver for the max17040 battery gauge does not propagate I2C register read errors raised by regmap_read(). When a transfer fails, the driver interprets the uninitialized register value as a valid measurement, reporting incorrect voltage or state‑of‑charge to user space. This flaw is a CWE‑908 vulnerability where error values are treated as legitimate data, leading to misleading telemetry. While there is no privilege escalation or code execution path, the incorrect battery information can mislead power management decisions and trigger false alerts.

Affected Systems

All Linux kernel installations that load the max17040 battery gauge driver are affected. The issue exists in any kernel version containing the unpatched driver code; specific kernel releases are not enumerated in the CVE data.

Risk and Exploitability

The CVSS score of 5.3 indicates moderate severity. EPSS is reported as <1%, showing a very low exploitation probability. The vulnerability is not listed in CISA KEV, and the likely attack vector requires local access to the I2C bus to induce a communication failure. Exploitation would produce erroneous battery readings and potential false power‑management events, causing reliability or availability problems but not immediate critical impact.

Generated by OpenCVE AI on September 21, 2026 at 01:44 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the Linux kernel update that includes the fix for max17040 register read error handling (e.g., merge commit 13fb0477 or subsequent kernel release).
  • Verify that the kernel configuration or device tree does not override the driver behavior; ensure error propagation for regmap_read() is enabled.
  • If a kernel update is not possible, disable the max17040 driver by removing it from the kernel configuration or masking the device in the device tree to prevent the faulty driver from loading.

Generated by OpenCVE AI on September 21, 2026 at 01:44 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-6528-1 linux security update
History

Sat, 12 Sep 2026 12:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-908
References
Metrics threat_severity

None

cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:H'}

threat_severity

Moderate


Fri, 11 Sep 2026 23:45:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: power: supply: max17040: propagate register read errors max17040_get_vcell() and max17040_get_soc() ignore errors returned by regmap_read(). When an I2C transfer fails, the uninitialized register value is converted and reported to userspace as a valid voltage or state of charge. The polling worker can also replace the cached state of charge with the bogus value and emit a spurious change event. Propagate read errors through the power supply get_property callback and keep the last valid cached state of charge when polling fails.
Title power: supply: max17040: propagate register read errors
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-09-11T19:43:23.984Z

Reserved: 2026-09-11T19:38:34.708Z

Link: CVE-2026-89462

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-11T20:19:27.157

Modified: 2026-09-11T20:19:27.157

Link: CVE-2026-89462

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-09-11T19:43:23Z

Links: CVE-2026-89462 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-09-21T01:45:07Z

Weaknesses
  • CWE-908

    Use of Uninitialized Resource