Description
In the Linux kernel, the following vulnerability has been resolved:

dmaengine: zynqmp_dma: fix race between runtime PM and device removal

In zynqmp_dma_remove(), runtime PM was disabled only after checking
state and doing a manual suspend. This can race with runtime PM in the
remove/unbind (rmmod) path.

Disable runtime PM first, then suspend only if the device is not already
suspended. To prevent any further runtime PM transitions.
Published: 2026-09-17
Score: n/a
EPSS: < 1% Very Low
KEV: No
Impact: Race Condition between Runtime Power Management and Device Removal potentially leading to driver instability or denial of service
Action: Apply Patch
AI Analysis

Impact

The flaw is a race condition in the ZynqMP DMA driver where the runtime power management (PM) subsystem could transition the device to suspend while the remove/unbind path is executing. This race can leave the DMA device in an inconsistent state, leading to crashes, hardware corruption or denial of service by triggering undefined behavior in the driver code. The weakness is a classic race condition vulnerability (CWE‑420).

Affected Systems

The vulnerability affects Linux kernel builds that contain the zynqmp_dma driver. Systems using boards that load the module, such as those incorporating the ZynqMP SoC, are impacted. No specific kernel release numbers are supplied by the CNA; the fix is present in the latest kernel sources as referenced by the commit logs.

Risk and Exploitability

The EPSS score of less than 1 % indicates a very low probability of exploitation at the time of this analysis, and the vulnerability is not listed in the CISA KEV catalog. The issue requires local access to the host machine and a capability to unload or bind the kernel module. While the risk is limited, failure to patch could allow a local attacker to destabilize the system by unloading the driver while it is active, potentially causing a reboot or crash. The lack of a public exploitation vector suggests the threat is mainly operational rather than a direct remote payload.

Generated by OpenCVE AI on September 19, 2026 at 08:34 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update the Linux kernel to a version that includes the fix referenced by commit 32f69e6c95b59f9cfc649ebf352a204d23ba93d7 or later.
  • If an immediate kernel update is not possible, disable runtime PM for the zynqmp_dma device and manually suspend the device before removal to avoid the race condition.
  • Monitor kernel logs for DMA driver errors and reboot the system if instability is observed.

Generated by OpenCVE AI on September 19, 2026 at 08:34 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 19 Sep 2026 09:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-420

Thu, 17 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: dmaengine: zynqmp_dma: fix race between runtime PM and device removal In zynqmp_dma_remove(), runtime PM was disabled only after checking state and doing a manual suspend. This can race with runtime PM in the remove/unbind (rmmod) path. Disable runtime PM first, then suspend only if the device is not already suspended. To prevent any further runtime PM transitions.
Title dmaengine: zynqmp_dma: fix race between runtime PM and device removal
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-09-17T16:12:00.570Z

Reserved: 2026-09-17T16:02:15.090Z

Link: CVE-2026-93169

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-17T17:18:12.600

Modified: 2026-09-17T17:18:12.600

Link: CVE-2026-93169

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-19T17:45:17Z

Weaknesses
  • CWE-420

    Unprotected Alternate Channel