Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2026-23055

10
FAUCET Score

CVE-2026-23055 addresses a vulnerability in the Linux kernel's Renesas I2C driver, specifically affecting devices like the RZ/G3E. The flaw allows I2C transfers to occur while the controller is suspended, leading to system warnings and potential operational issues. This issue arises from incorrect ordering of system sleep callbacks, preventing proper I2C controller availability during suspend and resume cycles. The vulnerability has no assigned CVSS score but carries a FAUCET Risk Score of 17/100, indicating a low to moderate severity. The attack vector is internal to the kernel's suspend/resume process, making direct external exploitation unlikely. The primary impact is system instability and potential device malfunction during power management states, rather than direct data compromise or privilege escalation. There is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability. It is not listed in the CISA KEV catalog and has not received media coverage, suggesting a low current threat profile.

Impacted Technologies

VendorProductVersion(s)CPE
LinuxLinux
6.12CNA affecteddefault affected
LinuxLinux
>= 53326135d0e041ebe7d08bf22f82529ae69a096e, < 0b4c0fbbe00b7de76bdaea7fa771017d7a979b0d, >= 53326135d0e041ebe7d08bf22f82529ae69a096e, < 469f8fe4c87e43520f279e45b927c35d6fe99194, >= 53326135d0e041ebe7d08bf22f82529ae69a096e, < e383f0961422f983451ac4dd6aed1a3d3311f2beCNA affecteddefault unaffected

CVSS Data

CVSS data has not been published for this CVE.

Exploit Intelligence

EPSS Score
0.17%
Probability of exploitation in next 30 days
EPSS Percentile
6.2%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15

Social Chatter

No social media mentions found for this CVE.

Media Mentions

No media coverage found for this CVE.

Remediation

Patch Available

Vendor Patches (5)

ubuntupatch availablevia ubuntu_usn
Product: linux-gcp-6.17 (noble)Fixed in: 6.17.0-1021.24~24.04.1
ubuntupatch availablevia ubuntu_usn
Product: linux-realtime-6.17 (noble)Fixed in: 6.17.0-1018.20~24.04.1
ubuntupatch availablevia ubuntu_usn
Product: linux-oem-6.17 (noble)Fixed in: 6.17.0-1030.30
ubuntupatch availablevia ubuntu_usn
Product: linux-azure-fde-6.17 (noble)Fixed in: 6.17.0-1018.18~24.04.1
ubuntupatch availablevia ubuntu_usn
Product: linux-azure-6.17 (noble)Fixed in: 6.17.0-1021.21~24.04.1

Vendor Advisories (5)

ubuntuUSN-8605-1

Linux kernel (Azure CVM) vulnerabilities

Jul 24, 2026
ubuntuUSN-8604-1

Linux kernel (Azure) vulnerabilities

Jul 24, 2026
ubuntuUSN-8594-1

Linux kernel (OEM) vulnerabilities

Jul 23, 2026
ubuntuUSN-8570-1

Linux kernel vulnerabilities

Jul 20, 2026
redhatCVE-2026-23055

kernel: i2c: riic: Move suspend handling to NOIRQ phase

Feb 4, 2026

References

git.kernel.org / stable/c/0b4c0fbbe00b7de76bdaea7fa771017d7a979b0d
git.kernel.org / stable/c/469f8fe4c87e43520f279e45b927c35d6fe99194
git.kernel.org / stable/c/e383f0961422f983451ac4dd6aed1a3d3311f2be