Description
In the Linux kernel, the following vulnerability has been resolved:

media: amd: isp4: fix self-deadlock in isp4sd_pwron_and_init() error path

isp4sd_pwron_and_init() holds ops_mutex via guard(mutex) and, on any
init failure, jumps to err_deinit and calls isp4sd_pwroff_and_deinit().
That helper takes the same ops_mutex, re-acquiring a non-recursive mutex
already held by the current thread, so any init failure deadlocks.

Unwind the error path in stages instead, releasing only what each
failure point acquired. This also avoids the issues that an
unconditional teardown would hit at the earlier failures, such as a
runtime-PM underflow from pm_runtime_resume_and_get() and MMIO access
while the device is unpowered.
Published: 2026-09-17
Score: n/a
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Patch Now
AI Analysis

Impact

The AMD ISP4 driver in the Linux kernel contains a flaw where its initialization routine holds a non‑recursive mutex, ops_mutex. When an error occurs during initialization, the routine jumps to an error path that calls a teardown helper that attempts to reacquire the same mutex. Because the mutex cannot be re‑entered, the current thread blocks, creating a self‑deadlock. This deadlock can stall device initialization and, if the driver is critical to system operation, lead to a system‑wide halt or freeze, resulting in a denial of service.

Affected Systems

All Linux kernel builds that incorporate the AMD ISP4 driver and lack the patching commit 74669cc3483e9729ca26b4e06a096ccdd607db64 are affected. This includes the generic Linux:Linux distributions, OEM kernels, and custom builds that include the unpatched driver. Kernels that have integrated the fix commit or later are not vulnerable.

Risk and Exploitability

The EPSS score is reported as less than 1%, and the vulnerability is not listed in the CISA KEV catalog, indicating a low likelihood of exploitation. The deadlock occurs only during kernel initialization or driver re‑initialization, requiring local kernel execution privileges; remote exploitation is not indicated by the description. An attacker with local privileges could trigger the failure path to cause the driver to deadlock, potentially resulting in a denial of service.

Generated by OpenCVE AI on September 20, 2026 at 01:42 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply a kernel update that includes commit 74669cc3483e9729ca26b4e06a096ccdd607db64 or later, which resolves the deadlock
  • If a kernel update cannot be applied immediately, disable or blacklist the AMD ISP4 driver to prevent the deadlock during boot or runtime
  • Monitor system logs, especially dmesg and kernel messages, for indications of driver initialization failures or deadlocks

Generated by OpenCVE AI on September 20, 2026 at 01:42 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 20 Sep 2026 02:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-665

Thu, 17 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: media: amd: isp4: fix self-deadlock in isp4sd_pwron_and_init() error path isp4sd_pwron_and_init() holds ops_mutex via guard(mutex) and, on any init failure, jumps to err_deinit and calls isp4sd_pwroff_and_deinit(). That helper takes the same ops_mutex, re-acquiring a non-recursive mutex already held by the current thread, so any init failure deadlocks. Unwind the error path in stages instead, releasing only what each failure point acquired. This also avoids the issues that an unconditional teardown would hit at the earlier failures, such as a runtime-PM underflow from pm_runtime_resume_and_get() and MMIO access while the device is unpowered.
Title media: amd: isp4: fix self-deadlock in isp4sd_pwron_and_init() error path
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-09-17T16:07:43.159Z

Reserved: 2026-09-11T19:38:34.794Z

Link: CVE-2026-90238

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-17T17:17:19.753

Modified: 2026-09-17T17:17:19.753

Link: CVE-2026-90238

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T01:45:17Z

Weaknesses