Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: crypto: keembay - Initialize completion before requesting IRQ kmb_ocs_aes_probe() requests the device IRQ before initializing irq_completion. Once the handler is registered it can run immediately, and ocs_aes_irq_handler() unconditionally calls complete(). An interrupt in this window would therefore use an uninitialized completion. Initialize the completion before requesting the IRQ, as the sibling OCS HCU and ECC drivers already do.
References
- https://git.kernel.org/stable/c/4ce407055ae9d37f46a3c6f05eb27198b354d287
- https://git.kernel.org/stable/c/5aae80dcec0748b4ed61daace2ad8b12082261f2
- https://git.kernel.org/stable/c/7efb51a5893b22003a679d088b7794be2ccd6c32
- https://git.kernel.org/stable/c/a3ffced8be1555f283680065c3b87a19f5ab9097
- https://git.kernel.org/stable/c/d52a15c4559b69805bc69bf4ad9e16bbf6480d52
- https://git.kernel.org/stable/c/f8970ee9e315c9e2258ae8914d5fb32b1039d2f6
- https://git.kernel.org/stable/c/fce20289dd622cc7ab78d72c8a979a9f8b7cb10e
FAQ
What is CVE-2026-92476?
CVE-2026-92476 is a documented vulnerability. In the Linux kernel, the following vulnerability has been resolved: crypto: keembay - Initialize completion before requesting IRQ kmb_ocs_aes_probe() requests the device IRQ before initializing irq_...
How severe is CVE-2026-92476?
CVSS scoring is not yet available for CVE-2026-92476. Check NVD for updates.
Is there a patch for CVE-2026-92476?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.