CVE-2026-98213
Received
Received - Intake
Memory Corruption in Linux Kernel MMC Core
Vulnerability report for CVE-2026-98213, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.
Publication date: 2026-10-06
Last updated on: 2026-10-06
Assigner: kernel.org
Description
Description
In the Linux kernel, the following vulnerability has been resolved:
mmc: core: Cancel SDIO IRQ work before freeing host
A host controller that uses sdio_signal_irq() schedules host->sdio_irq_work
from its interrupt handler. That work is only cancelled on the suspend
path (mmc_sdio_suspend()), not on the remove/free path, so a worker armed
just before the controller freed its IRQ can run after
mmc_host_classdev_release() has freed the host and dereference it through
container_of().
Cancel host->sdio_irq_work in mmc_free_host(), like the existing
host->detect drain added by commit 1036f69e2513 ("mmc: core: Cancel
delayed work before releasing host").
This issue was found by an in-house static analysis tool.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| Linux | Linux | 682696605c7093d2800c498c04166831e5aedf87 |
| Linux | Linux | 682696605c7093d2800c498c04166831e5aedf87 |
| Linux | Linux | 682696605c7093d2800c498c04166831e5aedf87 |
| Linux | Linux | 682696605c7093d2800c498c04166831e5aedf87 |
| Linux | Linux | 682696605c7093d2800c498c04166831e5aedf87 |
| Linux | Linux | 682696605c7093d2800c498c04166831e5aedf87 |
| Linux | Linux | 4.13 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-UNKNOWN |