{"id":"CVE-2026-89934","title":"In the Linux kernel, the following vulnerability has been resolved:\n\niio: light: ltrf216a: fix runtime PM reference leak in error path\n\nltrf216a_get_lux() acquires a runtime PM reference by calling\nltrf216a_set_power_state(data, true)","summary":"In the Linux kernel, the following vulnerability has been resolved:\n\niio: light: ltrf216a: fix runtime PM reference leak in error path\n\nltrf216a_get_lux() acquires a runtime PM reference by calling\nltrf216a_set_power_state(data, true). H…","severity":"none","vendor":"Linux","product":"Linux","affected":["Linux >= 83f0bcd40d5cf88870d2f2bb8b97c772b92a3d1f < c4f003d8578f5718fe1ec332bc89f9ff69fd205b","Linux >= 83f0bcd40d5cf88870d2f2bb8b97c772b92a3d1f < 0614928a3eda35bddd8c2f02311e286b59bbe746","Linux >= 83f0bcd40d5cf88870d2f2bb8b97c772b92a3d1f < 80e7381e8cccb543397572af153865f34aaf4353","Linux >= 83f0bcd40d5cf88870d2f2bb8b97c772b92a3d1f < c132aef0e757a39036b1d40faf0569f2e343b13e","Linux 6.1"],"published":"2026-09-16","updated":"2026-09-16","sourceUpdated":"2026-09-16T11:17:02.800","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-89934","references":[{"url":"https://git.kernel.org/stable/c/0614928a3eda35bddd8c2f02311e286b59bbe746","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67"},{"url":"https://git.kernel.org/stable/c/80e7381e8cccb543397572af153865f34aaf4353","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67"},{"url":"https://git.kernel.org/stable/c/c132aef0e757a39036b1d40faf0569f2e343b13e","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67"},{"url":"https://git.kernel.org/stable/c/c4f003d8578f5718fe1ec332bc89f9ff69fd205b","label":"416baaa9-dc9f-4396-8d5f-8c081fb06d67"}],"tags":["nvd","cve.org"],"ingestedAt":"2026-09-16T10:53:53.968Z","epss":0.002,"epssPercentile":0.10123,"slug":"CVE-2026-89934","body":"## Overview\n\nIn the Linux kernel, the following vulnerability has been resolved:\n\niio: light: ltrf216a: fix runtime PM reference leak in error path\n\nltrf216a_get_lux() acquires a runtime PM reference by calling\nltrf216a_set_power_state(data, true). However, if\nltrf216a_read_data() fails, the function returns immediately without\ndropping the reference.\n\nThis leaves the runtime PM usage count unbalanced, preventing the device\nfrom autosuspending after a failed read.\n\nFix this by releasing the runtime PM reference before returning from the\nerror path.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":3,"depthScoreParts":{"impact":2.8,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}