PT-2026-106593 · Linux · Linux

CVE-2026-98264

·

Published

2026-10-06

·

Updated

2026-10-06

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
In the Linux kernel, the following vulnerability has been resolved:
ALSA: virtio: reset device before deleting virtqueues
virtsnd remove() and virtsnd freeze() delete the virtqueues before resetting the device. del vqs() frees the vring backing, but does not provide a generic device quiesce operation. In particular, modern virtio-pci keeps enabled queues active until the device is reset.
Reset the device before deleting the virtqueues so it can no longer access the vring memory when that memory is released. This also covers probe failures after DRIVER OK, which unwind through virtsnd remove().
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-98264

Affected Products

Linux