CVE-2026-80553
Description
In the Linux kernel, the following vulnerability has been resolved: s390/vfio_ccw: Cancel existing workqueues The initialization of the io_work and crw_work workqueues begs the question of whether they should be un-initialized. Add the corresponding cleanup tags in _release_dev to ensure work isn't dispatched after the private struct is free'd.
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or — if you've already worked around this in production — publish your fix to the community-verified tier.
Propose a mitigation on Community Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
References
- https://git.kernel.org/stable/c/e868ea8be0bc88c6982f48ecf3259d98afd884ae
- https://git.kernel.org/stable/c/dc47a98abe6714577a25224534dbd356051097a3
- https://git.kernel.org/stable/c/b7ae0f7993867d009a4b554fc1d6d451c10580a0
- https://git.kernel.org/stable/c/77f5e888d2e607a0b3141fb95091ad6ef1cca9a2
- https://git.kernel.org/stable/c/79c60b2c61105368dcc8444eb45847e21734f7c4
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.