CVE-2026-46203

high

Description

In the Linux kernel, the following vulnerability has been resolved: spi: cadence-quadspi: fix unclocked access on unbind Make sure that the controller is runtime resumed before disabling it during driver unbind to avoid an unclocked register access. This issue was flagged by Sashiko when reviewing a controller deregistration fix.

References

https://git.kernel.org/stable/c/d67a5311818b3e6481a1e4293c9337ebfee73111

https://git.kernel.org/stable/c/63a9f6012f453578898c9fcc13c8452a8651104e

https://git.kernel.org/stable/c/2e7cd62c37f51823c2bb79de1d4d76d0c1678c7e

https://git.kernel.org/stable/c/233db2cb14db8b1935dda52a6affd97276462b82

Details

Source: Mitre, NVD

Published: 2026-05-28

Updated: 2026-06-19

Risk Information

CVSS v2

Base Score: 6.2

Vector: CVSS2#AV:L/AC:L/Au:S/C:C/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 7.1

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

Severity: High

EPSS

EPSS: 0.00018