PT-2026-61072 · Linux+1 · Linux Kernel+1

CVE-2026-53370

·

Published

2026-05-05

·

Updated

2026-09-07

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description Issues exist in the user space ACR mask validation and configuration within the x86 Intel perf subsystem. The validation for the user space ACR mask attr.config2 is incomplete, allowing the mask to include indices belonging to other ACR events groups. Additionally, an early return triggered by an invalid ACR mask causes subsequent ACR groups to be skipped, and the stale hardware ACR mask hw.config1 is not cleared before a new mask is applied.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Incomplete List of Disallowed Inputs

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-14286
CVE-2026-53370
USN-8593-1
USN-8603-1
USN-8618-1
USN-8663-1
USN-8664-1
USN-8728-1

Affected Products

Linux Kernel
Ubuntu