๐Ÿ” CVE Alert

CVE-2026-64373

UNKNOWN 0.0

cpufreq: Fix hotplug-suspend race during reboot

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: cpufreq: Fix hotplug-suspend race during reboot During system reboot, cpufreq_suspend() is called via the kernel_restart() -> device_shutdown() path. Unlike the normal system suspend path, the reboot path does not call freeze_processes(), so userspace processes and kernel threads remain active. This allows CPU hotplug operations to run concurrently with cpufreq_suspend(). The original code has no synchronization with CPU hotplug, leading to a race condition where governor_data can be freed by the hotplug path while cpufreq_suspend() is still accessing it, resulting in a null pointer dereference: Unable to handle kernel NULL pointer dereference Call Trace: do_kernel_fault+0x28/0x3c cpufreq_suspend+0xdc/0x160 device_shutdown+0x18/0x200 kernel_restart+0x40/0x80 arm64_sys_reboot+0x1b0/0x200 Fix this by adding cpus_read_lock()/cpus_read_unlock() to cpufreq_suspend() to block CPU hotplug operations while suspend is in progress. [ rjw: Changelog edits ]

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Jul 25, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
65650b35133ff20f0c9ef0abd5c3c66dbce3ae57 < 6d5dd354c37abaf4d60400c55c71f23ba2b33639 65650b35133ff20f0c9ef0abd5c3c66dbce3ae57 < 9103078c7b3091a2fbb52af176f95982ee7dd7f8 65650b35133ff20f0c9ef0abd5c3c66dbce3ae57 < cd4524ff6567fa4458a5bec4b017105e671d393e 65650b35133ff20f0c9ef0abd5c3c66dbce3ae57 < 73255d702c7560185fd5951aadcf7eb057c2f453 65650b35133ff20f0c9ef0abd5c3c66dbce3ae57 < a0ef2fc89d28ca62923376c4b8ffaa57136a36be 65650b35133ff20f0c9ef0abd5c3c66dbce3ae57 < 6e175c00c62dca3d91b987015808b5d52e8db2b4 65650b35133ff20f0c9ef0abd5c3c66dbce3ae57 < a0106b41f9a724868d390b8b3b4ea5ca0e04ea53 65650b35133ff20f0c9ef0abd5c3c66dbce3ae57 < a9029dd55696c651ee46912afa2a166fa456bb3e 8bfa06ea6e81bf08d2132d7e70c2b5313b34caf8 7ccf3b8b7a12dc9da158c2e699c36d04b2496944 5f466713989250938624afa79dc33bae20920700 89ab39da1452d272007acc5912d4008047b86706 cb4b4601f910c78d2b49f637a12ef98b41cb76a9 4.4.198 < 4.5 4.9.198 < 4.10 4.14.151 < 4.15 4.19.81 < 4.20 5.3.8 < 5.4
Linux / Linux
5.4

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/6d5dd354c37abaf4d60400c55c71f23ba2b33639 git.kernel.org: https://git.kernel.org/stable/c/9103078c7b3091a2fbb52af176f95982ee7dd7f8 git.kernel.org: https://git.kernel.org/stable/c/cd4524ff6567fa4458a5bec4b017105e671d393e git.kernel.org: https://git.kernel.org/stable/c/73255d702c7560185fd5951aadcf7eb057c2f453 git.kernel.org: https://git.kernel.org/stable/c/a0ef2fc89d28ca62923376c4b8ffaa57136a36be git.kernel.org: https://git.kernel.org/stable/c/6e175c00c62dca3d91b987015808b5d52e8db2b4 git.kernel.org: https://git.kernel.org/stable/c/a0106b41f9a724868d390b8b3b4ea5ca0e04ea53 git.kernel.org: https://git.kernel.org/stable/c/a9029dd55696c651ee46912afa2a166fa456bb3e