CVE-2026-80553 PUBLISHED

s390/vfio_ccw: Cancel existing workqueues

Assigner: Linux
Reserved: 26.08.2026 Published: 26.08.2026 Updated: 26.08.2026

In the Linux kernel, the following vulnerability has been resolved:

s390/vfio_ccw: Cancel existing workqueues

The initialization of the io_work and crw_work workqueues begs the question of whether they should be un-initialized. Add the corresponding cleanup tags in _release_dev to ensure work isn't dispatched after the private struct is free'd.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from e5f84dbaea59b4f712dac428c337528b70e1c533 to e868ea8be0bc88c6982f48ecf3259d98afd884ae (excl.)
  • affected from e5f84dbaea59b4f712dac428c337528b70e1c533 to dc47a98abe6714577a25224534dbd356051097a3 (excl.)
  • affected from e5f84dbaea59b4f712dac428c337528b70e1c533 to b7ae0f7993867d009a4b554fc1d6d451c10580a0 (excl.)
  • affected from e5f84dbaea59b4f712dac428c337528b70e1c533 to 77f5e888d2e607a0b3141fb95091ad6ef1cca9a2 (excl.)
  • affected from e5f84dbaea59b4f712dac428c337528b70e1c533 to 79c60b2c61105368dcc8444eb45847e21734f7c4 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 4.12 is affected
  • unaffected from 0 to 4.12 (excl.)
  • unaffected from 6.6.153 to 6.6.* (incl.)
  • unaffected from 6.12.105 to 6.12.* (incl.)
  • unaffected from 6.18.46 to 6.18.* (incl.)
  • unaffected from 7.1.10 to 7.1.* (incl.)
  • unaffected from 7.2 to * (incl.)

References