CVE-2026-90290
Published Sep 17, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: arm64: hibernate: Restore DAIF state on error Sashiko AI has reported that if swsusp_mte_save_tags() for some reason fails we return from swsusp_arch_suspend() with DAIF being masked - that is not what we'd expect. Restore the saved DAIF state before returning from the error path.
Is your site exposed to CVE-2026-90290?
Run a free security scan — no signup, results in seconds.
References
Other References
https://git.kernel.org/stable/c/2c941f383a53e188cd6fe3a129eb9b52b298e683
https://git.kernel.org/stable/c/519e7de2c4c7b92ef57d4404b7e564aa9be24143
https://git.kernel.org/stable/c/541549827889d0380fd73f8aacb5de6ef7a5a1ac
https://git.kernel.org/stable/c/77053624d03359a4e2ec47d7106639ec9a498c2b
https://git.kernel.org/stable/c/ad3839fe2114bb092846df79edd8d119e148b8c3
https://git.kernel.org/stable/c/c8c6835f62a7f9fc68865e85397d13a2dc9210fb
https://git.kernel.org/stable/c/cb51a05498e755d900900ff4b8503b4da4325996
https://git.kernel.org/stable/c/f5693dfaf28d66e7e880feafd1778d3715869efc
Frequently Asked Questions
What is CVE-2026-90290? +
In the Linux kernel, the following vulnerability has been resolved:
arm64: hibernate: Restore DAIF state on error
Sashiko AI has reported that if swsusp_mte_save_tags() for some reason
fails we return from swsusp_arch_suspend() with DAIF being masked -
that is not what we'd expect. Restore the saved DAIF state before
returning from the error path.
How do I check if I'm vulnerable to CVE-2026-90290? +
You can use Secably's free Website Scanner to check your website for known vulnerabilities. For infrastructure scanning, use the Port Scanner to identify exposed services that may be affected. Check the vendor advisories linked above for specific patch and version information.