{"id":"CVE-2026-97987","summary":"virtio_input: reset device if input_register_device() fails","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nvirtio_input: reset device if input_register_device() fails\n\nProbe marks the device DRIVER_OK with virtio_device_ready() before\ncalling input_register_device(). If registration fails, the error path\ncleared vi-\u003eready and called del_vqs() while the device was still live,\nso the device could keep DMA to queues that were already torn down.\n\nMatch remove/freeze: call virtio_reset_device() on that path before\ntearing down the virtqueues.","modified":"2026-09-26T03:48:42.471433835Z","published":"2026-09-25T10:23:21.388Z","database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/97xxx/CVE-2026-97987.json"},"references":[{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"},{"type":"WEB","url":"https://git.kernel.org/stable/c/668ebfea7ba623450b12fdeaa0d080464d0c0a14"},{"type":"WEB","url":"https://git.kernel.org/stable/c/81489b32a21c9360f8750d1fb600155d27452e19"},{"type":"WEB","url":"https://git.kernel.org/stable/c/8407da8974326c1ffdfe6a5a9bfc8fed3212bbdf"},{"type":"WEB","url":"https://git.kernel.org/stable/c/9a7e107734137f098f9b81e5615aa5a02c5395c7"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/97xxx/CVE-2026-97987.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-97987"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"271c865161c57cfabca45b93eaa712b19da365bc"},{"fixed":"9a7e107734137f098f9b81e5615aa5a02c5395c7"},{"fixed":"8407da8974326c1ffdfe6a5a9bfc8fed3212bbdf"},{"fixed":"668ebfea7ba623450b12fdeaa0d080464d0c0a14"},{"fixed":"81489b32a21c9360f8750d1fb600155d27452e19"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-97987.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"4.1.0"},{"fixed":"6.12.111"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"6.18.53"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.19.0"},{"fixed":"7.2.7"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-97987.json"}}],"schema_version":"1.9.0"}