CVE-2026-89939
Last modified
CVE-2026-89939 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: iio: chemical: atlas-sensor: fix PM reference leak in buffer postenable atlas_buffer_postenable() acquires a runtime PM reference with pm_runtime_resume_and_get() but returns the result of atlas_set_interrupt() directly. If atlas_set_interrupt() fails, the runtime PM reference is leaked and the device can never autosuspend. Add pm_runtime_put_autosuspend() on the error path to balance the reference..
Description
In the Linux kernel, the following vulnerability has been resolved: iio: chemical: atlas-sensor: fix PM reference leak in buffer postenable atlas_buffer_postenable() acquires a runtime PM reference with pm_runtime_resume_and_get() but returns the result of atlas_set_interrupt() directly. If atlas_set_interrupt() fails, the runtime PM reference is leaked and the device can never autosuspend. Add pm_runtime_put_autosuspend() on the error path to balance the reference.
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= 0e4f336f50debeacd0f81e931e8451f2ae03f685, < c7e91ae6d7802170f53ece09a4ecc6302265d3e4; >= 0e4f336f50debeacd0f81e931e8451f2ae03f685, < a595f4d3e4ee1c91c62a298730a77b16dc26b426; >= 0e4f336f50debeacd0f81e931e8451f2ae03f685, < 72daa7eb7fc6202fece0bb56487d72af5c49ccdf; >= 0e4f336f50debeacd0f81e931e8451f2ae03f685, < aedf8f068d9da774d5cb62e9c9d6e62b2ce64d86; >= 0e4f336f50debeacd0f81e931e8451f2ae03f685, < 43bce901047e95bbf8fb63eb471460642e497604; >= 0e4f336f50debeacd0f81e931e8451f2ae03f685, < 777e8ebfe6b3fa733694977f0f4cf849e07e925c; >= 0e4f336f50debeacd0f81e931e8451f2ae03f685, < bcd3f72e26314edfce7eaf8d7160b3119c7b7fed |
| Linux | Linux | 5.14 |
References
Timeline
- Published
- Last Modified
- Status
- Received
Frequently Asked Questions
What is CVE-2026-89939?
How severe is CVE-2026-89939?
How do I fix CVE-2026-89939?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-89933In the Linux kernel, the following vulnerability has been re…
- CVE-2026-89934In the Linux kernel, the following vulnerability has been re…
- CVE-2026-89935In the Linux kernel, the following vulnerability has been re…
- CVE-2026-89936In the Linux kernel, the following vulnerability has been re…
- CVE-2026-89937In the Linux kernel, the following vulnerability has been re…
- CVE-2026-89938In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2026-8994The Login with NEAR plugin for WordPress is vulnerable to Au…8.1
- CVE-2026-89940In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2026-89941In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2026-89942In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2026-89943In the Linux kernel, the following vulnerability has been re…8.4
- CVE-2026-89944In the Linux kernel, the following vulnerability has been re…
Are you affected by CVE-2026-89939?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
