CVE-2026-64303·Kernel vulnerability
In the Linux kernel, the following vulnerability has been resolved: spi: fsl-lpspi: terminate the RX channel on TX prepare failure path When dmaengine_prep_slave_sg() fails for the TX channel, the error path terminates the TX DMA channel but leaves the RX channel running. Since the RX channel was already submitted and issued prior to preparing the TX descriptor, returning -EINVAL causes the SPI core to unmap the DMA buffers while the RX DMA engine continues writing to them, leading to potential memory corruption or use-after-free. Terminate the RX channel before returning on the TX prepare failure path.
- Severity
- critical
- Software
- Kernel
- Fixed in
- 7.1.4
- Published
- 2026-07-25
Affected versions
From: 6.19
Until: 7.1.4
Fixed in: 7.1.4
How to fix this CVE
Update your Linux kernel to version 7.1.4 or later to resolve a critical DMA channel management flaw in the Freescale LPSPI driver. This vulnerability can cause memory corruption when SPI DMA transfers fail during TX channel preparation. Apply the kernel patch immediately, especially if your system uses SPI devices with DMA support.
sudo dnf update kernel kernel-develDefensia detects this vulnerability
How to check if you are affected
- Check your current kernel version: uname -r
- Verify if fsl-lpspi driver is loaded: lsmod | grep fsl_lpspi or grep -i lpspi /proc/modules
- Review kernel logs for DMA-related errors: journalctl -k | grep -i 'dma\|lpspi\|prepare'
- Confirm the fix by checking kernel commit presence: grep -r '01980b5da56e573d62798d0ff6c86bcaa2b22cbe' /boot/ 2>/dev/null || echo 'Check kernel source: git log --oneline | grep -i lpspi'
FAQ
What is CVE-2026-64303?
This is a critical Linux kernel vulnerability in the Freescale LPSPI SPI driver where failed TX DMA channel preparation leaves the RX DMA channel actively writing to memory buffers that have been unmapped, causing potential memory corruption or use-after-free conditions.
Is CVE-2026-64303 being actively exploited?
No, this vulnerability is not currently listed on CISA's Known Exploited Vulnerabilities (KEV) catalog and no public exploits are available.
What versions of Kernel are affected by CVE-2026-64303?
Linux kernel versions 6.19 through 7.1.3 are vulnerable. The vulnerability is fixed in kernel 7.1.4 and later.
How do I check if my server is vulnerable to CVE-2026-64303?
Run `uname -r` to check your kernel version. If it shows a version between 6.19 and 7.1.3 and `lsmod | grep fsl_lpspi` returns a loaded module, your system is potentially vulnerable.
Does Defensia detect CVE-2026-64303?
Yes — Defensia's CVE advisory scanner compares installed package versions against the NVD database. If Kernel is installed on a monitored server, CVE-2026-64303 will appear in your dashboard with remediation steps.
Related Kernel CVEs
References
- https://git.kernel.org/stable/c/01980b5da56e573d62798d0ff6c86bcaa2b22cbe
- https://git.kernel.org/stable/c/808033d80d5c9f8adf7e8de9317389270ce13430
- https://git.kernel.org/stable/c/9d000bdd250d649a11cd7f733175686877344582
- https://git.kernel.org/stable/c/ad370d1c7a9a832f77b2341513cd31188c9443af
- https://git.kernel.org/stable/c/af39a2698f69b584d14a00cffe0f51a2caa15337
Track CVEs across your fleet automatically
Defensia scans your Linux servers and tells you exactly which ones are running vulnerable versions — including CVE-2026-64303. Free for 1 server.
Get started free