← All Advisories

CVE-2026-97969

Last refreshed2026-10-03

Status: UPDATED  |  Advisory ID: CVE-2026-97969

Key Details

CVECVE-2026-97969
Affected productsLinux Linux

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
LinuxLinux
SubsystemsGeneral OT
SectorsMultiple

What to Know

In the Linux kernel, the following vulnerability has been resolved:

watchdog: msc313e: Fix clock leak and spurious timer in settimeout()

msc313e_wdt_settimeout() unconditionally calls msc313e_wdt_start() which

introduces two severe bugs:

1. If the watchdog is already active, calling start() again will

increase the reference count of the clock again. However stop() is

only called once, the reference count is unbalance.

2. If the watchdog is stopped, calling settimeout() will start

the hardware timer accidentally.

Factor out the register-writing logic into a helper function. Only call

it in settimeout() if the watchdog is running. Otherwise, simply update

`wdev->timeout`. (NVD)

What to Do

Monitor Linux's web page for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-97969
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-97969