CVE-2026-46134: platform/chrome: cros_ec_typec: Init mutex in Thunderbolt registration
In the Linux kernel, the following vulnerability has been resolved:
platform/chrome: crosectypec: Init mutex in Thunderbolt registration
crostypecregisterthunderbolt() missed initializing the adata->lock mutex. This leads to a NULL dereference when the mutex is later acquired (e.g. in crostypecaltmodework()).
Initialize the mutex in crostypecregisterthunderbolt() to fix the issue.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Initialize the adata->lock mutex in cros_typec_register_thunderbolt() so it is initialized before being acquired by cros_typec_altmode_work()
platform/chrome: cros_ec_typec adata->lock = initialized mutex