CWE-667

Improper Locking

Parent: CWE-662 - Improper Synchronization

The product does not properly acquire or release a lock on a resource, leading to unexpected resource state changes and behaviors.

722 vulnerabilities with CWE-667
CVE-2026-43327 MEDIUM
USB: dummy-hcd: Fix locking/synchronization error
CVSS 5.5
CVE-2026-43326 MEDIUM
sched_ext: Fix SCX_KICK_WAIT deadlock by deferring wait to balance callback
CVSS 5.5
CVE-2026-43319 MEDIUM
spi: spidev: fix lock inversion between spi_lock and buf_lock
CVSS 5.5
CVE-2026-43305 MEDIUM
drm/amd/display: Fix mismatched unlock for DMUB HW lock in HWSS fast path
CVSS 5.5
CVE-2026-43296 HIGH
octeontx2-af: Workaround SQM/PSE stalls by disabling sticky
CVSS 7.5
CVE-2026-43253 HIGH
iommu/amd: move wait_on_sem() out of spinlock
CVSS 7.5
CVE-2026-43252 MEDIUM
mptcp: pm: in-kernel: always set ID as avail when rm endp
CVSS 5.5
CVE-2026-43215 HIGH
cifs: Fix locking usage for tcon fields
CVSS 8.8
CVE-2026-43211 HIGH
PCI: Fix pci_slot_trylock() error handling
CVSS 7.8
CVE-2026-43147 MEDIUM
Revert "PCI/IOV: Add PCI rescan-remove locking when enabling/disabling SR-IOV"
CVSS 5.5
CVE-2026-43127 MEDIUM
ntfs3: fix circular locking dependency in run_unpack_ex
CVSS 5.5
CVE-2026-43061 MEDIUM
serial: 8250: Fix TX deadlock when using DMA
CVSS 5.5
CVE-2026-43029 HIGH
mptcp: fix soft lockup in mptcp_recvmsg()
CVSS 7.5
CVE-2026-31756 MEDIUM
usb: dwc2: gadget: Fix spin_lock/unlock mismatch in dwc2_hsotg_udc_stop()
CVSS 5.5
CVE-2026-31687 MEDIUM
gpio: omap: do not register driver in probe()
CVSS 5.5
CVE-2026-31667 HIGH
Input: uinput - fix circular locking dependency with ff-core
CVSS 7.8
CVE-2026-31629 HIGH
nfc: llcp: add missing return after LLCP_CLOSED checks
CVSS 8.8
CVE-2026-31598 HIGH
ocfs2: fix possible deadlock between unlink and dio_end_io_write
CVSS 7.5
CVE-2026-31565 MEDIUM
RDMA/irdma: Fix deadlock during netdev reset with active connections
CVSS 5.5
CVE-2026-31526 MEDIUM
bpf: Fix exception exit lock checking for subprogs
CVSS 5.5
CVE-2026-31509 MEDIUM
nfc: nci: fix circular locking dependency in nci_close_device
CVSS 5.5
CVE-2026-31499 MEDIUM
Bluetooth: L2CAP: Fix deadlock in l2cap_conn_del()
CVSS 5.5
CVE-2026-31487 MEDIUM
spi: use generic driver_override infrastructure
CVSS 5.5
CVE-2026-31486 HIGH
hwmon: (pmbus/core) Protect regulator operations with mutex
CVSS 7.1
CVE-2026-31480 MEDIUM
tracing: Fix potential deadlock in cpu hotplug with osnoise
CVSS 5.5
Details
Vulnerabilities 722