7.8

CVE-2026-43074

eventpoll: defer struct eventpoll free to RCU grace period

In the Linux kernel, the following vulnerability has been resolved:

eventpoll: defer struct eventpoll free to RCU grace period

In certain situations, ep_free() in eventpoll.c will kfree the epi->ep
eventpoll struct while it still being used by another concurrent thread.
Defer the kfree() to an RCU callback to prevent UAF.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version 58c9b016e12855286370dfb704c08498edbc857a
Version < a6566cd33f6f967a7651ebf2ce0dd31572e319cf
Status affected
Version 58c9b016e12855286370dfb704c08498edbc857a
Version < 5b1173b165421561db29f30afc7e97d940a398a9
Status affected
Version 58c9b016e12855286370dfb704c08498edbc857a
Version < 7e8083f5eeedab0f460063b9c2c14c9a4e71a427
Status affected
Version 58c9b016e12855286370dfb704c08498edbc857a
Version < ae0bb9c1fb7c2594519aeeb096cf2c3b7837b322
Status affected
Version 58c9b016e12855286370dfb704c08498edbc857a
Version < 07712db80857d5d09ae08f3df85a708ecfc3b61f
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 6.4
Status affected
Version 0
Version < 6.4
Status unaffected
Version <= 6.6.*
Version 6.6.136
Status unaffected
Version <= 6.12.*
Version 6.12.83
Status unaffected
Version <= 6.18.*
Version 6.18.24
Status unaffected
Version <= 6.19.*
Version 6.19.14
Status unaffected
Version <= *
Version 7.0
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.01% 0.024
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
416baaa9-dc9f-4396-8d5f-8c081fb06d67 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Es wurden noch keine Informationen zu CWE veröffentlicht.