CVE-2026-93169 is a vulnerability in Linux Kernel
Published on September 17, 2026
dmaengine: zynqmp_dma: fix race between runtime PM and device removal
In the Linux kernel, the following vulnerability has been resolved:
dmaengine: zynqmp_dma: fix race between runtime PM and device removal
In zynqmp_dma_remove(), runtime PM was disabled only after checking
state and doing a manual suspend. This can race with runtime PM in the
remove/unbind (rmmod) path.
Disable runtime PM first, then suspend only if the device is not already
suspended. To prevent any further runtime PM transitions.
Products Associated with CVE-2026-93169
Want to know whenever a new CVE is published for Linux Kernel? stack.watch will email you.
Affected Versions
Linux:- Version 72dd8b2914b5db1dccf902971c2ea6b541711b28 and below 32f69e6c95b59f9cfc649ebf352a204d23ba93d7 is affected.
- Version 72dd8b2914b5db1dccf902971c2ea6b541711b28 and below aec7cf9a5bd89047c58d5648bfce0b1bd19ba7d5 is affected.
- Version 72dd8b2914b5db1dccf902971c2ea6b541711b28 and below 516ba2d8b7aac4238f9fcbd58579c43c71b9b695 is affected.
- Version 6.18 is affected.
- Before 6.18 is unaffected.
- Version 6.18.52, <= 6.18.* is unaffected.
- Version 7.2.6, <= 7.2.* is unaffected.
- Version 7.3-rc1, <= * is unaffected.