CVE-2026-90056
Received Received - Intake

BaseFortify

Vulnerability report for CVE-2026-90056, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-17

Last updated on: 2026-09-17

Assigner: kernel.org

Description

In the Linux kernel, the following vulnerability has been resolved: net: fec: only stop PTP if it was initialized fec_ptp_init() is only called when fep->bufdesc_ex is available. However, fec_probe() unconditionally calls fec_ptp_stop() on the failed_init path, and fec_drv_remove() unconditionally calls fec_ptp_stop() during device removal. Check fep->bufdesc_ex before calling fec_ptp_stop() in both paths to avoid stopping PTP when it was not initialized.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-17
Last Modified
2026-09-17
Generated
2026-10-10
EPSS Evaluated
2026-10-09
NVD

Affected Vendors & Products

Showing 11 associated CPEs
Vendor Product Version / Range
Linux Linux 32cba57ba74be58589aeb4cb6496183e46a5e3e5
Linux Linux 32cba57ba74be58589aeb4cb6496183e46a5e3e5
Linux Linux 32cba57ba74be58589aeb4cb6496183e46a5e3e5
Linux Linux 32cba57ba74be58589aeb4cb6496183e46a5e3e5
Linux Linux 32cba57ba74be58589aeb4cb6496183e46a5e3e5
Linux Linux 32cba57ba74be58589aeb4cb6496183e46a5e3e5
Linux Linux 32cba57ba74be58589aeb4cb6496183e46a5e3e5
Linux Linux 32cba57ba74be58589aeb4cb6496183e46a5e3e5
Linux Linux 9561b28349a22c808c3ce25eaed4d132104bafb7
Linux Linux 3.18.99
Linux Linux 4.2

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
AI Quick Actions have not been generated yet.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-90056. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart