Vulnerability in Linux Kernel Affects Arm64 Hibernation Process
CVE-2026-93256

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
24 September 2026

What is CVE-2026-93256?

The arm64 hibernation code within the Linux kernel has a flaw in exception masking that can lead to system instability during the resume process. When a hibernation image is saved, it incorrectly assumes that all exceptions will remain masked upon restoration. This can cause fatal errors due to the potential for Debug, SError, or pseudo-NMI exceptions to occur during a critical time when both old and new kernel states are simultaneously present. Mitigating this vulnerability involves ensuring all DAIF exceptions are properly masked during resume operations to avoid transient inconsistent states that could lead to crashes or silent failures.

Affected Version(s)

Linux 82869ac57b5d3b550446932c918dbf2caf020c9e

Linux 82869ac57b5d3b550446932c918dbf2caf020c9e < 099ad3edcef1d955d9f5d6aab16ae78ecdfd4cda

Linux 82869ac57b5d3b550446932c918dbf2caf020c9e < 716c41bd476334afb943308be9ff2142e34461b7

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.