Answer in brief
CVE-2026-90274 records a Unknown severity vulnerability in coresight: etm4x: fix underflow for usage of (nrseqstate - 1). The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=2e1cdfe184b5202d51e0611d7a051e2bea303946 <8d669db59f7283b838e029af29da12e505265fae || >=2e1cdfe184b5202d51e0611d7a051e2bea303946 <4091f2d5b26d117c992ffcce1a5df425a0daedcd || >=2e1cdfe184b5202d51e0611d7a051e2bea303946 <be7b2de5b9a96ae68ffa3528e0a40d63e0fd8148 || >=2e1cdfe184b5202d51e0611d7a051e2bea303946 <4f9a0f548413bf864f609c9f4bc56e3f1b3577d4 || >=2e1cdfe184b5202d51e0611d7a051e2bea303946 <1ade9a335c69fc735cb7b3f222ed35ab135540fb || >=2e1cdfe184b5202d51e0611d7a051e2bea303946 <5ac900f73ce1d4d8308f40752b51bc8a02b244d2 || >=2e1cdfe184b5202d51e0611d7a051e2bea303946 <1674d9bff8073bdee5dbc200f56fc3caa28d0566 | 8d669db59f7283b838e029af29da12e505265fae, 4091f2d5b26d117c992ffcce1a5df425a0daedcd, be7b2de5b9a96ae68ffa3528e0a40d63e0fd8148, 4f9a0f548413bf864f609c9f4bc56e3f1b3577d4, 1ade9a335c69fc735cb7b3f222ed35ab135540fb, 5ac900f73ce1d4d8308f40752b51bc8a02b244d2, 1674d9bff8073bdee5dbc200f56fc3caa28d0566 |
| Linux/Linuxgeneric | 4.2 | Not reported |
Published upstream
Sep 17, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Sep 17, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Sep 17, 2026
In the Linux kernel, the following vulnerability has been resolved: coresight: etm4x: fix underflow for usage of (nrseqstate - 1) According to IHI006H Embedded Trace Macrocell Architecture Specification[0], TRCSEQEVR<n> is implemented only when TRCIDR5.NUMSEQSTATE is 0b100, in which case n ranges from 0 to 2; otherwise, TRCIDR5.NUMSEQSTATE is 0b000. IOW, the number of usage in the initialisation or setting TRCSEQEVR<n> with drvdata->nrseqstate - 1 in the loop could make underflow issue when TRCIDR5.NUMSEQSTATE is 0b000. Therefore, introduce nr_seq_ctrls field and untie it from nrseqstate. As part of this introduce ETM_MAX_SEQ_TRANSITIONS macro and apply nr_seq_ctrls and above macro to TRCSEQEVR<n> relevant fields setup.
Quoted source text, attributed separately from HOL analysis.