Linux Kernel Vulnerability in i2c-i801 Driver Affecting Hardware State Management
CVE-2026-64205

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
20 July 2026

What is CVE-2026-64205?

A vulnerability in the i2c-i801 driver of the Linux Kernel exposes systems to a serious issue where an unconditional hardware register cleanup during the error handling path can lead to a livelock scenario and subsequent system panic. Under conditions where the SMBus controller is actively engaged by BIOS/ACPI, improper resource management can disrupt ongoing transactions, corrupting the SMBus hardware state machine. This results in persistent error logs being generated which monopolize CPU resources, ultimately triggering a hung task watchdog. The resolution involves ensuring that hardware cleanup tasks are executed appropriately only when resources are rightfully acquired, significantly enhancing stability.

Affected Version(s)

Linux 1f760b87e54cf56a25ab68f8dc625e339f6e46d5

Linux 1f760b87e54cf56a25ab68f8dc625e339f6e46d5 < 00904687b9c5527d569d9a1ca72119823e735a61

Linux 1f760b87e54cf56a25ab68f8dc625e339f6e46d5 < 10dd1a736d557e310a77117832874729a0175d57

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.