{"id":"AZL-101495","summary":"CVE-2026-89939 affecting package kernel 6.6.150.1-1","details":"In the Linux kernel, the following vulnerability has been resolved:\n\niio: chemical: atlas-sensor: fix PM reference leak in buffer postenable\n\natlas_buffer_postenable() acquires a runtime PM reference with\npm_runtime_resume_and_get() but returns the result of\natlas_set_interrupt() directly. If atlas_set_interrupt() fails,\nthe runtime PM reference is leaked and the device can never\nautosuspend.\n\nAdd pm_runtime_put_autosuspend() on the error path to balance\nthe reference.","modified":"2026-09-18T05:37:08Z","published":"2026-09-16T11:17:03Z","upstream":["CVE-2026-89939"],"references":[{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-89939"}],"affected":[{"package":{"name":"kernel","ecosystem":"Azure Linux:3","purl":"pkg:rpm/azure-linux/kernel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"last_affected":"6.6.150.1-1"}]}],"database_specific":{"source":"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-101495.json"}}],"schema_version":"1.9.0"}