What is CVE-2026-74463?
CVE-2026-74463 in the Linux kernel addresses a severe AB/BA deadlock between the Common Clock Framework (CCF) and the I2C adapter lock within the i2c: jz4780 driver. The vulnerability can cause a system hang when an I2C-controlled clock generator is activated. The fix caches the host clock rate at probe to prevent the deadlock.
Azərbaycanca: Linux kernel-də aşkarlanan CVE-2026-74463 zəifliyi i2c: jz4780 sürücüsündə "Common Clock Framework" (CCF) ilə I2C adapter kilidi arasında ciddi AB/BA deadlock probleminə səbəb olur. Bu zəiflik I2C ilə idarə olunan saat generatoru işə düşəndə sistemin donmasına gətirib çıxara bilər. Problemi həll etmək üçün host clock rate-in probe mərhələsində keşlənməsi tətbiq edilib.
FAQ2
In which Linux kernel component was the CVE-2026-74463 vulnerability discovered?
The CVE-2026-74463 vulnerability was discovered in the i2c: jz4780 driver.
What is the root cause of this deadlock issue?
The root cause is an AB/BA deadlock between the Common Clock Framework (CCF) and the I2C adapter lock.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.