CVE-2026-89897

HIGHCVSS 7.5/10

Last modified

CVE-2026-89897 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. In the Linux kernel, the following vulnerability has been resolved: media: cec: Serialize exclusive follower delivery cec_receive_notify() reads the exclusive follower pointer without the adapter lock. Serialize the no-follower check and message delivery against mode changes and release..

Description

In the Linux kernel, the following vulnerability has been resolved: media: cec: Serialize exclusive follower delivery cec_receive_notify() reads the exclusive follower pointer without the adapter lock. Serialize the no-follower check and message delivery against mode changes and release.

Metrics

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 9881fe0ca187c213eb3a6a8e78e45ad4d1cec171, < efc829b4b937f98c4467bffe9243f756b7cfbf7f; >= 9881fe0ca187c213eb3a6a8e78e45ad4d1cec171, < cac577854826950dda4d53569728b1da6c1425d5; >= 9881fe0ca187c213eb3a6a8e78e45ad4d1cec171, < 4b532b271c91790b7ab661cd488a7ad36f5c4f6b; >= 9881fe0ca187c213eb3a6a8e78e45ad4d1cec171, < 271e57a936dcdbaecb4b1bd005d9a285bbe60ab4; >= 9881fe0ca187c213eb3a6a8e78e45ad4d1cec171, < df941e6851da17fc53c7f6af2bdcc7383d17babc; >= 9881fe0ca187c213eb3a6a8e78e45ad4d1cec171, < 5c62095acc2a952099688774513c4a637bcdb2b5; >= 9881fe0ca187c213eb3a6a8e78e45ad4d1cec171, < ae614f48712156fb0f55b207338d48d422c58bc0; >= 9881fe0ca187c213eb3a6a8e78e45ad4d1cec171, < 1924d0788caa6c66fd320dd4704fae99487fd2c7
LinuxLinux4.8

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-89897?
In the Linux kernel, the following vulnerability has been resolved: media: cec: Serialize exclusive follower delivery cec_receive_notify() reads the exclusive follower pointer without the adapter lock. Serialize the no-follower check and message delivery against mode changes and release.
How severe is CVE-2026-89897?
CVE-2026-89897 has a CVSS score of 7.5/10 (HIGH severity).
How do I fix CVE-2026-89897?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-89897?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST