In the Linux kernel, the following vulnerability has been resolved: hsi: omap_ssi_core: fix missing DMA mask setup for SSI controller device The… (CVE-2026-89594)
A vulnerability in the Linux kernel's OMAP SSI driver was resolved by fixing a missing DMA mask setup for the SSI controller device. The issue arose because the synthetic HSI controller device did not have a DMA mask initialized by default, leading to potential crashes or warnings during DMA operations after recent DMA API hardening. The fix explicitly initializes the DMA mask with a 32-bit setting matching hardware capabilities.
AI Analysis
Technical Summary
The Linux kernel's OMAP SSI driver uses a synthetic HSI controller device allocated via hsi_alloc_controller(), bypassing the normal device initialization path. Consequently, the embedded struct device lacked a DMA mask initialization. Recent DMA API hardening requires a valid dma_mask for dma_map_sg() and related functions; without it, the driver may crash or produce warnings during DMA mapping. The vulnerability was fixed by explicitly setting a 32-bit DMA mask for the SSI controller device to align with hardware capabilities.
Potential Impact
Without a valid DMA mask, the driver may crash or trigger warnings during DMA mapping operations, potentially causing instability or denial of service in affected systems using the OMAP SSI controller device. No evidence of exploitation in the wild is reported.
Mitigation Recommendations
A fix is available that explicitly initializes the DMA mask for the SSI controller device with a 32-bit mask. Users should apply the official Linux kernel update that includes this patch to resolve the issue.
In the Linux kernel, the following vulnerability has been resolved: hsi: omap_ssi_core: fix missing DMA mask setup for SSI controller device The… (CVE-2026-89594)
Description
A vulnerability in the Linux kernel's OMAP SSI driver was resolved by fixing a missing DMA mask setup for the SSI controller device. The issue arose because the synthetic HSI controller device did not have a DMA mask initialized by default, leading to potential crashes or warnings during DMA operations after recent DMA API hardening. The fix explicitly initializes the DMA mask with a 32-bit setting matching hardware capabilities.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The Linux kernel's OMAP SSI driver uses a synthetic HSI controller device allocated via hsi_alloc_controller(), bypassing the normal device initialization path. Consequently, the embedded struct device lacked a DMA mask initialization. Recent DMA API hardening requires a valid dma_mask for dma_map_sg() and related functions; without it, the driver may crash or produce warnings during DMA mapping. The vulnerability was fixed by explicitly setting a 32-bit DMA mask for the SSI controller device to align with hardware capabilities.
Potential Impact
Without a valid DMA mask, the driver may crash or trigger warnings during DMA mapping operations, potentially causing instability or denial of service in affected systems using the OMAP SSI controller device. No evidence of exploitation in the wild is reported.
Mitigation Recommendations
A fix is available that explicitly initializes the DMA mask for the SSI controller device with a 32-bit mask. Users should apply the official Linux kernel update that includes this patch to resolve the issue.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- GHSA-2c7x-rwh5-mhqm
- Osv Schema Version
- 1.4.0
- Aliases
- ["CVE-2026-89594"]
Threat ID: 6aa4a00e55bf5e2cf5a86692
Added to database: 09/12/2026, 00:42:54 UTC
Last enriched: 09/12/2026, 01:04:44 UTC
Last updated: 09/12/2026, 01:04:44 UTC
Views: 2
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.