PT-2026-27676 · Linux · Linux Kernel

CVE-2026-23311

·

Publicado

2026-01-01

·

Atualizado

2026-05-26

CVSS v3.1

5.5

Média

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.15.0-next-20250530-next-20250530 #1
Description The Linux kernel contains a flaw in the event scheduling within the perf/core component, specifically in the ctx sched in() function. Lockdep detected a bug where an invalid wait context occurs when a pinned event fails and attempts to wake up threads in the ring buffer. This issue arises from attempting to acquire a wait-queue lock while holding a perf-context lock, which is incorrect. The fix involves using irq work to address this synchronization problem.
Recommendations Update the Linux kernel to version 6.15.0-next-20250530-next-20250530 #1 or a later version to resolve this issue.

Exploit

Correção

Race Condition

Improper Locking

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-12320
CVE-2026-23311

Produtos afetados

Linux Kernel