What is CVE-2026-68465?
This vulnerability in the Linux kernel's MMC subsystem involves the `esdhc_change_pinstate()` function in the sdhci-esdhc-imx driver incorrectly returning -EINVAL when `pins_100mhz` or `pins_200mhz` are not defined, preventing the restoration of the default pin state. Affected systems should apply the kernel update.
Azərbaycanca: Linux kernel-də mmc alt sistemində aşkarlanan bu boşluq, sdhci-esdhc-imx sürücüsündəki `esdhc_change_pinstate()` funksiyasının `pins_100mhz` və ya `pins_200mhz` təyin edilmədikdə səhvən -EINVAL qaytarması ilə bağlıdır. Bu, sürücünün default pin vəziyyətinə qayıtmasına mane olur. Təsirə məruz qalan sistemlərdə kernel yenilənməsi tətbiq edilməlidir.
FAQ2
Which subsystem of the Linux kernel is affected by CVE-2026-68465?
This vulnerability affects the MMC subsystem of the Linux kernel, specifically the sdhci-esdhc-imx driver.
Which function in the sdhci-esdhc-imx driver causes the vulnerability?
The vulnerability is caused by the `esdhc_change_pinstate()` function.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.