Race condition in Linux kernel - CVE-2026-80655
Published: August 28, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a race condition in the zynqmp_power event registration handlers when processing firmware-triggered suspend or subsystem restart events immediately after event registration. A local user can trigger the affected event handling path to cause a denial of service.
The issue can lead to a NULL pointer dereference in work_pending() if the callback runs before the work structures are allocated and initialized.