{"id":"CVE-2026-89599","title":"kernel: fbdev: omapfb: panel-dsi-cm: initialize lock before registering display (CVE-2026-89599)","summary":"A flaw was found in the Linux kernel's `fbdev: omapfb: panel-dsi-cm` component. The `dsicm_probe()` function registers a display before its associated lock (mutex) is properly initialized. This timing issue allows another process to attemp…","severity":"medium","cvss":5.5,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","cvssSource":"vendor","cwe":"CWE-908","vendor":"Red Hat","product":"Linux","affected":["Linux >= f76ee892a99e68b55402b8d4b8aeffcae2aff34d < ef20d4e17d7fb0d83144caa9667e6f3198288993","Linux >= f76ee892a99e68b55402b8d4b8aeffcae2aff34d < e7023d18c4eb292f886b31a3576402cb0e357df7","Linux >= f76ee892a99e68b55402b8d4b8aeffcae2aff34d < f33a96e49284589257e90ddc4394ec0c6bf11ec4","Linux >= f76ee892a99e68b55402b8d4b8aeffcae2aff34d < 302d19fbc7dc7e9f498930c66d65ff711ba5ba9f","Linux >= f76ee892a99e68b55402b8d4b8aeffcae2aff34d < 2c3f8c9c995db185284b079f39177e85b2258176","Linux >= f76ee892a99e68b55402b8d4b8aeffcae2aff34d < 76818e81cfcae33b09b739de09162c7d8d89bf0b","Linux >= f76ee892a99e68b55402b8d4b8aeffcae2aff34d < 09db79078f25c048cfb5d7849795c70415ab8574","Linux >= f76ee892a99e68b55402b8d4b8aeffcae2aff34d < f8e43fe0f22b7137ce456e6fe3581d3098174f74","Linux 4.5"],"published":"2026-09-11","updated":"2026-09-18","sourceUpdated":"2026-09-18T18:32:23+00:00","source":"CSAF","sourceUrl":"https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89599.json","references":[{"url":"https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89599.json"},{"url":"https://access.redhat.com/security/cve/CVE-2026-89599"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2532244"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-89599"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-89599"},{"url":"https://git.kernel.org/pub/scm/linux/security/vulns.git/plain/cve/published/2026/CVE-2026-89599.mbox"},{"url":"https://git.kernel.org/stable/c/ef20d4e17d7fb0d83144caa9667e6f3198288993"},{"url":"https://git.kernel.org/stable/c/e7023d18c4eb292f886b31a3576402cb0e357df7"},{"url":"https://git.kernel.org/stable/c/f33a96e49284589257e90ddc4394ec0c6bf11ec4"},{"url":"https://git.kernel.org/stable/c/302d19fbc7dc7e9f498930c66d65ff711ba5ba9f"},{"url":"https://git.kernel.org/stable/c/2c3f8c9c995db185284b079f39177e85b2258176"},{"url":"https://git.kernel.org/stable/c/76818e81cfcae33b09b739de09162c7d8d89bf0b"},{"url":"https://git.kernel.org/stable/c/09db79078f25c048cfb5d7849795c70415ab8574"},{"url":"https://git.kernel.org/stable/c/f8e43fe0f22b7137ce456e6fe3581d3098174f74"}],"tags":["csaf","vex","red-hat","cve.org","score-dispute"],"epss":0.00144,"epssPercentile":0.04026,"scores":{"vendor":5.5,"cna":8.4},"ingestedAt":"2026-09-14T15:23:07.451Z","slug":"CVE-2026-89599","body":"## Overview\n\nA flaw was found in the Linux kernel's `fbdev: omapfb: panel-dsi-cm` component. The `dsicm_probe()` function registers a display before its associated lock (mutex) is properly initialized. This timing issue allows another process to attempt to acquire the uninitialized mutex, which could lead to system instability or a Denial of Service (DoS).\n\n## Vendor advisories\n\n- **Red Hat VEX** · Moderate · updated 2026-09-18 · [vex](https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89599.json)\n\n**kernel: fbdev: omapfb: panel-dsi-cm: initialize lock before registering display** — rated Moderate by Red Hat. Released 2026-09-11, updated 2026-09-18.\n\nNot affected:\n\n- Red Hat Enterprise Linux 10\n- Red Hat Enterprise Linux 6\n- Red Hat Enterprise Linux 7\n- Red Hat Enterprise Linux 8\n- Red Hat Enterprise Linux 9\n- Red Hat OpenShift Container Platform 4\n\n## Remediation\n\nRefer to the advisory for fix availability.","depth":"sunlit","depthScore":30,"depthScoreParts":{"impact":30.3,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[{"seq":208141,"id":"CVE-2026-89599","ts":1789922723577,"field":"cvss","old":"8.4","new":"5.5"},{"seq":208140,"id":"CVE-2026-89599","ts":1789922723577,"field":"severity","old":"high","new":"medium"},{"seq":197880,"id":"CVE-2026-89599","ts":1789384320790,"field":"cvss","old":"5.5","new":"8.4"},{"seq":197879,"id":"CVE-2026-89599","ts":1789384320790,"field":"severity","old":"medium","new":"high"},{"seq":183433,"id":"CVE-2026-89599","ts":1789356675349,"field":"cvss","old":"8.4","new":"5.5"},{"seq":183432,"id":"CVE-2026-89599","ts":1789356675349,"field":"severity","old":"high","new":"medium"},{"seq":153418,"id":"CVE-2026-89599","ts":1789285350433,"field":"cvss","old":null,"new":"8.4"},{"seq":153417,"id":"CVE-2026-89599","ts":1789285350433,"field":"severity","old":"none","new":"high"},{"seq":147498,"id":"CVE-2026-89599","ts":1789270211144,"field":"cvss","old":null,"new":"5.5"},{"seq":147497,"id":"CVE-2026-89599","ts":1789270211144,"field":"severity","old":"none","new":"medium"},{"seq":109248,"id":"CVE-2026-89599","ts":1789183731137,"field":"cvss","old":null,"new":"5.5"},{"seq":109247,"id":"CVE-2026-89599","ts":1789183731137,"field":"severity","old":"none","new":"medium"}]}