Linux Kernel Vulnerability in AMD MP2 Driver Affecting I2C Adapter Registration
CVE-2026-80680

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
28 August 2026

What is CVE-2026-80680?

A vulnerability exists in the Linux kernel within the AMD MP2 driver related to the I2C adapter registration process. During the initialization, if the adapter fails to register, the platform I2C context is incorrectly stored within the MP2 PCI driver's callback table. As a result, this can lead to a situation where the PCI driver attempts to dereference a stale pointer from its IRQ and system-sleep callbacks, leading to potential system instability or security risks. The solution involves unregistering the callback before returning any registration error to prevent the use of dangling pointers.

Affected Version(s)

Linux 529766e0a0114438887382a68d97341fbf8349fb < 9142a3dcff0d80a3a24ce159aee19ddc869d9784

Linux 529766e0a0114438887382a68d97341fbf8349fb < 2f7789b3a9628819ebf90bcba8f9da3c139f8687

Linux 529766e0a0114438887382a68d97341fbf8349fb < 4786d4d70dcd1e6b7e044f2348e00f201947b69c

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.