Linux Kernel Vulnerability in hwmon Affects Fan Speed Functionality
CVE-2026-74546
Currently unrated
What is CVE-2026-74546?
A vulnerability in the Linux kernel's hwmon subsystem can cause a divide-by-zero crash when reading fan speed data. This occurs if the fan data value becomes zero after the validation check but before the conversion to RPM, resulting in a race condition during concurrent updates. The issue has been mitigated by ensuring fan data is read only once to prevent this timing-related attack vector.
Affected Version(s)
Linux fc958a61ff6d34a0ec42744d3ff524ee202b2e9f
Linux fc958a61ff6d34a0ec42744d3ff524ee202b2e9f < 832069bec79cf6f903441c5769d3cdba95d0af33
Linux fc958a61ff6d34a0ec42744d3ff524ee202b2e9f < 96ad57d31763559d376416cdf3bf5ae79bbbebec