-

CVE-2026-80866

Medienbericht

tipc: avoid busy looping in tipc_exit_net()

In the Linux kernel, the following vulnerability has been resolved:

tipc: avoid busy looping in tipc_exit_net()

Blamed commit introduced a busy-wait loop in tipc_exit_net()
to wait for pending UDP bearer cleanup works to complete:

       while (atomic_read(&tn->wq_count))
               cond_resched();

This loop can busy-wait for a long time if cond_resched() is a NOP. This
typically happens if the netns exit is executed by a high priority task,
or under kernels configured without preemption (CONFIG_PREEMPT_NONE). In
such cases, it wastes CPU cycles and can lead to soft lockups.

Fix this by replacing the busy loop with wait_var_event(), allowing the
thread to sleep properly until the work queue count reaches zero.

Accordingly, update cleanup_bearer() to use atomic_dec_and_test() and
wake_up_var() to wake up the waiter when the count drops to zero.

This uses the global wait queue hash table, avoiding the need to bloat
struct tipc_net with a wait_queue_head_t. The atomic_dec_and_test()
provides the necessary memory barrier to ensure the wakeup is not missed.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 04c26faa51d1e2fe71cf13c45791f5174c37f986
Version < 522d1d950b9e3b68190a6de7534827c8dccedb73
Status affected
Version 04c26faa51d1e2fe71cf13c45791f5174c37f986
Version < c1481c94e74c955e0448ddf46b8615a44d840c1e
Status affected
Version d1f76dfadaf8f47ed1753f97dbcbd41c16215ffa
Status affected
Version 5195ec5e365a2a9331bfeb585b613a6e94f98dba
Status affected
Version b9f5b7ad4ac3af006443f535b1ce7bff1d130d7d
Status affected
Version 5.4.124
Version < 5.5
Status affected
Version 5.10.42
Version < 5.11
Status affected
Version 5.12.9
Version < 5.13
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 5.13
Status affected
Version 0
Version < 5.13
Status unaffected
Version <= 7.1.*
Version 7.1.5
Status unaffected
Version <= *
Version 7.2
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.15% 0.041
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
Für Zugriff zu Vulnerability Intelligence ist ein VulnDex Zugang erforderlich.
VulnDex Intel
Media Report
08.09.2026 20:38
https://git.kernel.org/stable/c/522d1d950b9e3b68190a6de7534827c8dccedb73
https://git.kernel.org/stable/c/c1481c94e74c955e0448ddf46b8615a44d840c1e