PT-2026-37503 · Linux+3 · Linux Kernel+3

CVE-2026-43163

·

Published

2026-01-20

·

Updated

2026-08-23

CVSS v3.1

4.7

Medium

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A use-after-free race condition exists between the bitmap daemon work() and bitmap resize() functions. The daemon iterates over bitmap->storage.filemap without proper locking, while the resize process frees that storage using md bitmap file unmap(). Because quiesce() fails to stop the md thread, concurrent access to freed pages can occur, leading to a General Protection Fault (GPF)—a type of error occurring when the processor detects a memory access violation—within the write page() function during an array resize.
Recommendations Apply the update that ensures mddev->bitmap info.mutex is held during the bitmap update.

Exploit

Fix

DoS

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:19568
ALSA-2026:21706
ALSA-2026:21745
ALSA-2026:38492
BDU:2026-11691
CVE-2026-43163
OESA-2026-2582
OESA-2026-3157
RHSA-2026:19568
RHSA-2026:21209
RHSA-2026:21706
RHSA-2026:21745
RHSA-2026:22900
RHSA-2026:22940
RHSA-2026:23224
RHSA-2026:25095
RHSA-2026:26535
RHSA-2026:26563
RHSA-2026:38492
RHSA-2026:41236
USN-8492-1
USN-8492-2
USN-8492-3
USN-8492-4
USN-8492-5
USN-8497-1
USN-8498-1
USN-8499-1
USN-8575-1
USN-8575-2
USN-8575-3
USN-8576-1
USN-8576-2
USN-8597-1
USN-8606-1
USN-8607-1
USN-8609-1
USN-8610-1
USN-8619-1
USN-8620-1
USN-8620-2
USN-8620-3
USN-8620-4
USN-8668-1

Affected Products

Linuxmint
Linux Kernel
Rocky Linux
Ubuntu