CVE-2026-64238 PUBLISHED

gpio: shared: fix deadlock on shared proxy's parent removal

Assigner: Linux
Reserved: 19.07.2026 Published: 24.07.2026 Updated: 24.07.2026

In the Linux kernel, the following vulnerability has been resolved:

gpio: shared: fix deadlock on shared proxy's parent removal

Commit 710abda58055 ("gpio: shared: call gpio_chip::of_xlate() if set") used the mutex embedded in struct gpio_shared_entry to protect the offset field which now can be modified after assignment. The critical section however is too wide and introduced a potential deadlock on the removal of the shared GPIO proxy's parent.

Make the critical section shorter - only protect the offset when it's being read.

While at it: mention the fact that the entry lock is now also used to protect against concurrent access to the offset field in the structure's documentation.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 710abda58055ed5eaa8958107633cc12a365c328 to a554dfcd30dd5e41d1d67387b3bb85cea83e12e1 (excl.)
  • affected from 710abda58055ed5eaa8958107633cc12a365c328 to a1b836607304f71051f9f9dcccf8b5097b86a1fb (excl.)
  • Version 28f488e7b327630686378bb1d24e22cfc3fc162d is affected
  • affected from 6.19.12 to 6.20 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 7.0 is affected
  • unaffected from 0 to 7.0 (excl.)
  • unaffected from 7.0.12 to 7.0.* (incl.)
  • unaffected from 7.1 to * (incl.)

References