Improper control of a resource through its lifetime in Linux kernel - CVE-2026-80623
Published: August 28, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper state management in the coresight etm4x/ete power management handling when powering down CPUs while using coresight tracing. A local user can trigger CPU power management events while tracing is active to cause a denial of service.
This affects system register ETMs, ETE devices, and ACPI-based systems where trace state is not preserved across CPU power down.