Inadequate Error Handling in Linux Kernel's SPI Driver Affects QCOM QSPI Products
CVE-2026-97512

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
24 September 2026

What is CVE-2026-97512?

A vulnerability in the Linux kernel's SPI driver for QCOM QSPI results from insufficient error handling in runtime power management (PM) functions. This flaw can leave the system in an inconsistent state if an operation fails during suspend or resume processes, risking clock and power imbalances. The vulnerability was mitigated by enhancing error checking throughout all operations and implementing goto-based cleanup protocols. This ensures that any successfully acquired resources are properly released in event of an error, ultimately preventing potential performance and stability issues.

Affected Version(s)

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 62dd3b8d3a92eb4e080b2ae491c2a5341654c1ee

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.