CVE-2026-64162
In the Linux kernel, the following vulnerability has been resolved:
idpf: fix readdevclklock spinlock init in idpfptp_init()
In idpfptpinit(), readdevclk_lock is initialized after
ptpscheduleworker() had already been called (and after
idpfptpsettime64() could reach the lock). The PTP aux worker
fires immediately upon scheduling and can call into
idpfptpreadsrcclkregdirect(), which takes
spinlock(&ptp->readdevclklock) on an uninitialized lock, triggering
the lockdep "non-static key" warning:
[12973.796587] idpf 0000:83:00.0: Device HW Reset initiated
[12974.094507] INFO: trying to register non-static key.
...
[12974.097208] Call Trace:
[12974.097213] <TASK>
[12974.097218] dumpstacklvl+0x93/0xe0
[12974.097234] registerlockclass+0x4c4/0x4e0
[12974.097249] ? _lockacquire+0x427/0x2290
[12974.097259] _lockacquire+0x98/0x2290
[12974.097272] lock_acquire+0xc6/0x310
[12974.097281] ? idpfptpreadsrcclk_reg+0xb7/0x150 [idpf]
[12974.097311] ? lockdephardirqson_prepare+0xde/0x190
[12974.097318] ? finishtaskswitch.isra.0+0xd2/0x350
[12974.097330] ? _pfxptpauxkworker+0x10/0x10 [ptp]
[12974.097343] rawspin_lock+0x30/0x40
[12974.097353] ? idpfptpreadsrcclk_reg+0xb7/0x150 [idpf]
[12974.097373] idpfptpreadsrcclk_reg+0xb7/0x150 [idpf]
[12974.097391] ? kthreadworkerfn+0x88/0x3d0
[12974.097404] ? kthreadworkerfn+0x4e/0x3d0
[12974.097411] idpfptpupdatecachedphctime+0x26/0x120 [idpf]
[12974.097428] ? rawspinunlockirq+0x28/0x50
[12974.097436] idpfptpdoauxwork+0x15/0x20 [idpf]
[12974.097454] ptpauxkworker+0x20/0x40 [ptp]
[12974.097464] kthreadworkerfn+0xd5/0x3d0
[12974.097474] ? _pfxkthreadworkerfn+0x10/0x10
[12974.097482] kthread+0xf4/0x130
[12974.097489] ? _pfxkthread+0x10/0x10
[12974.097498] retfromfork+0x32c/0x410
[12974.097512] ? _pfxkthread+0x10/0x10
[12974.097519] retfromfork_asm+0x1a/0x30
[12974.097540] </TASK>
Move the call to spinlockinit() up a bit to make sure readdevclk_lock
is not touched before it's been initialized.
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://git.kernel.org/stable/c/3122d70b7c0101d897fb795658a7b93f854935f2, https://git.kernel.org/stable/c/da4f76b6a84ede14a71282ef841768299ead0221, https://git.kernel.org/stable/c/eb5991d4c8ba2e8153dfcda3e66a9608377b7dce, https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/64xxx/CVE-2026-64162.json, https://nvd.nist.gov/vuln/detail/CVE-2026-64162, https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git