CVE-2026-89897
Last modified
CVE-2026-89897 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. In the Linux kernel, the following vulnerability has been resolved: media: cec: Serialize exclusive follower delivery cec_receive_notify() reads the exclusive follower pointer without the adapter lock. Serialize the no-follower check and message delivery against mode changes and release..
Description
In the Linux kernel, the following vulnerability has been resolved: media: cec: Serialize exclusive follower delivery cec_receive_notify() reads the exclusive follower pointer without the adapter lock. Serialize the no-follower check and message delivery against mode changes and release.
Metrics
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= 9881fe0ca187c213eb3a6a8e78e45ad4d1cec171, < efc829b4b937f98c4467bffe9243f756b7cfbf7f; >= 9881fe0ca187c213eb3a6a8e78e45ad4d1cec171, < cac577854826950dda4d53569728b1da6c1425d5; >= 9881fe0ca187c213eb3a6a8e78e45ad4d1cec171, < 4b532b271c91790b7ab661cd488a7ad36f5c4f6b; >= 9881fe0ca187c213eb3a6a8e78e45ad4d1cec171, < 271e57a936dcdbaecb4b1bd005d9a285bbe60ab4; >= 9881fe0ca187c213eb3a6a8e78e45ad4d1cec171, < df941e6851da17fc53c7f6af2bdcc7383d17babc; >= 9881fe0ca187c213eb3a6a8e78e45ad4d1cec171, < 5c62095acc2a952099688774513c4a637bcdb2b5; >= 9881fe0ca187c213eb3a6a8e78e45ad4d1cec171, < ae614f48712156fb0f55b207338d48d422c58bc0; >= 9881fe0ca187c213eb3a6a8e78e45ad4d1cec171, < 1924d0788caa6c66fd320dd4704fae99487fd2c7 |
| Linux | Linux | 4.8 |
References
Timeline
- Published
- Last Modified
- Status
- Received
Frequently Asked Questions
What is CVE-2026-89897?
How severe is CVE-2026-89897?
How do I fix CVE-2026-89897?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-89891In the Linux kernel, the following vulnerability has been re…
- CVE-2026-89892In the Linux kernel, the following vulnerability has been re…
- CVE-2026-89893In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2026-89894In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2026-89895In the Linux kernel, the following vulnerability has been re…
- CVE-2026-89896In the Linux kernel, the following vulnerability has been re…
- CVE-2026-89898In the Linux kernel, the following vulnerability has been re…8.8
- CVE-2026-89899In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2026-8990A user with physical access to a smartphone can bypass authe…5.3
- CVE-2026-89900In the Linux kernel, the following vulnerability has been re…
- CVE-2026-89901In the Linux kernel, the following vulnerability has been re…
- CVE-2026-89902In the Linux kernel, the following vulnerability has been re…7.8
Are you affected by CVE-2026-89897?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
