PT-2026-51949 · Linux+2 · Linux Kernel+2

CVE-2026-53055

·

Published

2026-03-27

·

Updated

2026-09-10

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A use-after-free issue exists in the hisilicon/sec2 crypto component. Under heavy load during packet transmission, the hardware may complete packet processing and free the request memory (req) before the transmission function finishes. If the software attempts to access this req memory after it has been freed, a system error occurs. This is addressed by replacing the req with qp ctx memory, which persists throughout the entire packet sending process.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-13973
CVE-2026-53055
USN-8566-1
USN-8568-1
USN-8569-1
USN-8593-1
USN-8603-1
USN-8618-1
USN-8663-1
USN-8664-1
USN-8728-1
USN-8748-1

Affected Products

Linuxmint
Linux Kernel
Ubuntu