In the Linux kernel, the following vulnerability has been resolved: i2c: tegra: fix pm_runtime leak on mutex_lock failure If tegra_i2c_mutex_lock()… (CVE-2026-64171)
A vulnerability in the Linux kernel's i2c tegra driver caused a runtime PM reference leak when mutex_lock failed in the tegra_i2c_mutex_lock() function. This leak prevents the device from entering runtime suspend, potentially impacting power management. The issue is fixed by adding a missing pm_runtime_put() call before returning on lock failure.
AI Analysis
Technical Summary
The Linux kernel's i2c tegra driver had a flaw where if tegra_i2c_mutex_lock() failed to acquire the mutex, it returned without releasing the runtime PM reference acquired earlier by pm_runtime_get_sync(). This caused a leak of the runtime PM reference, preventing the device from entering runtime suspend state. The fix involves adding the missing pm_runtime_put() call before returning on mutex lock failure, ensuring proper release of the runtime PM reference.
Potential Impact
The vulnerability causes a runtime PM reference leak that prevents the affected device from entering runtime suspend, which may lead to increased power consumption or battery drain. There is no indication of direct security compromise or code execution impact.
Mitigation Recommendations
A fix has been implemented to add the missing pm_runtime_put() call on mutex lock failure in the tegra_i2c_mutex_lock() function. Users should apply the updated Linux kernel patches that include this fix. Patch status is not explicitly confirmed in the provided data; check the vendor or Linux kernel advisory for the current remediation guidance.
In the Linux kernel, the following vulnerability has been resolved: i2c: tegra: fix pm_runtime leak on mutex_lock failure If tegra_i2c_mutex_lock()… (CVE-2026-64171)
Description
A vulnerability in the Linux kernel's i2c tegra driver caused a runtime PM reference leak when mutex_lock failed in the tegra_i2c_mutex_lock() function. This leak prevents the device from entering runtime suspend, potentially impacting power management. The issue is fixed by adding a missing pm_runtime_put() call before returning on lock failure.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The Linux kernel's i2c tegra driver had a flaw where if tegra_i2c_mutex_lock() failed to acquire the mutex, it returned without releasing the runtime PM reference acquired earlier by pm_runtime_get_sync(). This caused a leak of the runtime PM reference, preventing the device from entering runtime suspend state. The fix involves adding the missing pm_runtime_put() call before returning on mutex lock failure, ensuring proper release of the runtime PM reference.
Potential Impact
The vulnerability causes a runtime PM reference leak that prevents the affected device from entering runtime suspend, which may lead to increased power consumption or battery drain. There is no indication of direct security compromise or code execution impact.
Mitigation Recommendations
A fix has been implemented to add the missing pm_runtime_put() call on mutex lock failure in the tegra_i2c_mutex_lock() function. Users should apply the updated Linux kernel patches that include this fix. Patch status is not explicitly confirmed in the provided data; check the vendor or Linux kernel advisory for the current remediation guidance.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- GHSA-5qc2-5c25-4m38
- Osv Schema Version
- 1.4.0
- Aliases
- ["CVE-2026-64171"]
- Ecosystems
- []
- Database Specific Severity
- null
- Cvss Version
- null
Threat ID: 6a5d27a82a4a8d598912a87f
Added to database: 07/19/2026, 19:38:16 UTC
Last enriched: 07/19/2026, 19:42:30 UTC
Last updated: 07/20/2026, 17:26:47 UTC
Views: 13
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.