What is CVE-2026-10683?
This vulnerability affects the Synopsys DesignWare I2C driver in target/slave mode, where the rx_full interrupt handler improperly gates the write_requested() callback. The driver state is only reset on a STOP interrupt, while a START_DET interrupt fails to correctly reset the state, potentially leading to a denial of service. Affected systems should update the I2C driver to mitigate the issue.
Azərbaycanca: Bu zəiflik Synopsys DesignWare I2C sürücüsündə target/slave rejimdə işləyərkən rx_full kəsilmə idarəedicisinə aiddir. write_requested() funksiyası yalnız STOP kəsilməsi qəbul edildikdə çağırıla bilər, lakin START_DET kəsilməsi ilə dövlət düzgün sıfırlanmadığı üçün hücumçu slave qurğuda xidmət rəddinə səbəb ola bilər. Təsirə məruz qalan sistemlərdə bu sürücünü yeniləmək tövsiyə olunur.
FAQ1
In which mode of the Synopsys DesignWare I2C driver does CVE-2026-10683 occur?
This vulnerability occurs when the driver is operating in target/slave mode.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.