news.mlab.sh
Vulnerabilities
Vulnerability

CVE-2026-43061

Reference data from vuln.mlab.sh, coverage from our own index.

CVSS
5.5 Medium
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Risk score
44.0
Published
2026-05-05
Status
Published

In the Linux kernel, the following vulnerability has been resolved: serial: 8250: Fix TX deadlock when using DMA `dmaengine_terminate_async` does not guarantee that the `__dma_tx_complete` callback will run. The callback is currently the only place where `dma->tx_running` gets cleared. If the transaction is canceled and the callback never runs, then `dma->tx_running` will never get cleared and we will never schedule new TX DMA transactions again. This change makes it so we clear `dma->tx_running` after we terminate the DMA transaction. This is "safe" because `serial8250_tx_dma_flush` is holding the UART port lock. The first thing the callback does is also grab the UART port lock, so access to `dma->tx_running` is serialized. A flaw was found in the Linux kernel's 8250 serial driver when utilizing Direct Memory Access (DMA). An issue arises when a DMA transaction is terminated asynchronously, as the system may not properly clear the `dma->tx_running` flag. This prevents subsequent transmit (TX) DMA transactions from being scheduled, leading to a deadlock. This vulnerability can result in a Denial of Service (DoS), rendering the serial communication unresponsive.

Weaknesses

CWE-413

Coverage 6

Advisories and references