Linux Kernel Vulnerability in hwmon Affects Fan Speed Functionality
CVE-2026-74546

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
15 August 2026

What is CVE-2026-74546?

A vulnerability in the Linux kernel's hwmon subsystem can cause a divide-by-zero crash when reading fan speed data. This occurs if the fan data value becomes zero after the validation check but before the conversion to RPM, resulting in a race condition during concurrent updates. The issue has been mitigated by ensuring fan data is read only once to prevent this timing-related attack vector.

Affected Version(s)

Linux fc958a61ff6d34a0ec42744d3ff524ee202b2e9f

Linux fc958a61ff6d34a0ec42744d3ff524ee202b2e9f < 832069bec79cf6f903441c5769d3cdba95d0af33

Linux fc958a61ff6d34a0ec42744d3ff524ee202b2e9f < 96ad57d31763559d376416cdf3bf5ae79bbbebec

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.