CVE-2026-89897
In the Linux kernel, the following vulnerability has been resolved: media: cec: Serialize exclusive follower delivery cec_receive_notify() reads the exclusive follower pointer without the adapter lock. Serialize the no-follower check and message delivery against mode changes and release.
- Published Sep 16, 2026
- CVSS 7.5 high
- 0.4% chance of exploitation in the next 30 days (EPSS)
- A fix is available