CVE-2026-93288
Błąd w jądrze Linuxa pozwala na zwolnienie stanu pernet bez oczekiwania na zakończenie RCU, co może prowadzić do nieprzewidywalnych zachowań.
In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_log: wait for rcu grace period before freeing pernet state sashiko reports: "nfnl_log_net_exit() calls nf_log_unset(), which clears the logger pointer without an RCU grace period. Immediately after, ops_free_list() frees the per-net state while concurrent packets might still be executing nf_log_packet() under rcu_read_lock()." Clear the pointer via .pre_exit to make sure rcu readers have completed before pernet storage is free'd. The change in nf_log_syslog.c is only done for consistency: it doesn't use pernet data.
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 7.8 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 0.1% |
| Opublikowano (NVD) | 2026-09-24 17:17:10 UTC |
| Ostatnia modyfikacja (NVD) | 2026-10-03 11:17:47 UTC |
- https://git.kernel.org/stable/c/33d1469b0124cc0baaea7a2032123b77a81e0940 (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/3b9aa62d78ce80de47af2db472ff452398755213 (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/5570d6c8b320dbcc602617ee08c27ce752fed65a (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/ba2e246aa294f9acd86194ea87fb6834ed0a37ac (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/dc20050b6b12ca58066715d088e1a537535d938d (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/f4461654374576e9d5d0245fd534c46ad8509051 (416baaa9-dc9f-4396-8d5f-8c081fb06d67)