7.8
CVE-2026-90177
- EPSS 0.15%
- Veröffentlicht 17.09.2026 16:07:03
- Zuletzt bearbeitet 18.09.2026 18:17:45
- Erkennungen
bpf: Check pointer type for all atomic RMW paths
In the Linux kernel, the following vulnerability has been resolved: bpf: Check pointer type for all atomic RMW paths Atomic RMW verification records an instruction pointer type only when the current destination is PTR_TO_ARENA. A second path can therefore reach the same instruction with an ordinary pointer without comparing it against the saved arena type. The post-verification fixup uses the saved type to rewrite the instruction to BPF_PROBE_ATOMIC for every path. Record the actual destination type for all atomic RMW paths so the existing mismatch check rejects incompatible uses of one instruction.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version
d503a04f8bc0c75dc9db9452d8cc79d748afb752
Version <
eb287c6e81dedef92da01eb947f380d0aae513c3
Status
affected
Version
d503a04f8bc0c75dc9db9452d8cc79d748afb752
Version <
4bc49ae344d65cfcef738f281ac575cf73ca2fc5
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
6.10
Status
affected
Version
0
Version <
6.10
Status
unaffected
Version <=
7.2.*
Version
7.2.6
Status
unaffected
Version <=
*
Version
7.3-rc1
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.15% | 0.049 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
https://git.kernel.org/stable/c/eb287c6e81dedef92da01eb947f380d0aae513c3
https://git.kernel.org/stable/c/4bc49ae344d65cfcef738f281ac575cf73ca2fc5