๐Ÿ” CVE Alert

CVE-2026-90193

UNKNOWN 0.0

mailbox: qcom-cpucp: fix PREEMPT_RT self-deadlock in IRQ handler

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: mailbox: qcom-cpucp: fix PREEMPT_RT self-deadlock in IRQ handler qcom_cpucp_mbox_irq_fn() calls mbox_chan_received_data() while holding chan->lock. Under PREEMPT_RT, spin_lock_irqsave() is converted to an rt_spinlock (rtmutex-based), which tracks ownership and can sleep. The callback chain triggered by mbox_chan_received_data() eventually reaches mailbox_clear_channel() -> mbox_send_message() -> add_to_rbuf(), which attempts to re-acquire the same chan->lock. Since rtmutex detects the re-entrant lock attempt by the same owner, the thread blocks waiting for a lock it already holds, causing a permanent deadlock. This deadlock manifests as 'irq/N-apss_cpucp_mbox' stuck in D state with the following call trace: rt_spin_lock -> mbox_send_message -> mailbox_clear_channel -> scmi_rx_callback -> mbox_chan_received_data [<- held chan->lock here] Fix by saving chan->cl locally and clearing the HW interrupt register inside the lock, then invoking mbox_chan_received_data() after releasing the lock. This preserves the mutual exclusion for chan->cl access while avoiding the lock re-entrancy that causes the PREEMPT_RT deadlock.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 17, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
0e2a9a03106cd5fa0dbc9047675e7645c55e2669 < aa482273f32117c3adeba9b1cc945e0b5d33722d 0e2a9a03106cd5fa0dbc9047675e7645c55e2669 < 8b8de6400c86937ed57d680d06d716e167b381de 0e2a9a03106cd5fa0dbc9047675e7645c55e2669 < e40b3edeaf25cd09e9c88edb1ef99373ca37593b 0e2a9a03106cd5fa0dbc9047675e7645c55e2669 < 3690aaa6d18f6775c3e7932fb8af8c5bf6a6b69c
Linux / Linux
6.11

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/aa482273f32117c3adeba9b1cc945e0b5d33722d git.kernel.org: https://git.kernel.org/stable/c/8b8de6400c86937ed57d680d06d716e167b381de git.kernel.org: https://git.kernel.org/stable/c/e40b3edeaf25cd09e9c88edb1ef99373ca37593b git.kernel.org: https://git.kernel.org/stable/c/3690aaa6d18f6775c3e7932fb8af8c5bf6a6b69c