-
CVE-2026-89516
- EPSS 0.16%
- Veröffentlicht 11.09.2026 19:43:59
- Zuletzt bearbeitet 11.09.2026 20:19:34
- Erkennungen
sched_ext: Don't BUG_ON a destroyed DSQ in process_deferred_reenq_users
In the Linux kernel, the following vulnerability has been resolved:
sched_ext: Don't BUG_ON a destroyed DSQ in process_deferred_reenq_users
scx_bpf_dsq_reenq() queues a deferred reenq (dru) that runs from
run_deferred(), not ops.dispatch(). If the DSQ is destroyed before the dru
runs, process_deferred_reenq_users() sees dsq->id == SCX_DSQ_INVALID and
hits the BUG_ON. destroy_dsq() doesn't flush pending drus, so just skip.
tj: Read dsq->id once with READ_ONCE(). Reading it separately in the INVALID
check and the BUG_ON would leave a window where destroy_dsq() can
invalidate the id between the two reads and still trigger the BUG_ON.Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version
84b1a0ea0b7c23dec240783a592e480780efe459
Version <
c480961a1e790b46ffd8c20c4b6754d65ec6572d
Status
affected
Version
84b1a0ea0b7c23dec240783a592e480780efe459
Version <
8d8dd8ae89eaa78b37fc85528e926029f5facbdf
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
7.1
Status
affected
Version
0
Version <
7.1
Status
unaffected
Version <=
7.2.*
Version
7.2.4
Status
unaffected
Version <=
*
Version
7.3-rc1
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.16% | 0.057 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|
https://git.kernel.org/stable/c/c480961a1e790b46ffd8c20c4b6754d65ec6572d
https://git.kernel.org/stable/c/8d8dd8ae89eaa78b37fc85528e926029f5facbdf