PT-2026-61072 · Linux+1 · Linux Kernel+1
CVE-2026-53370
·
Published
2026-05-05
·
Updated
2026-09-07
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
Issues exist in the user space ACR mask validation and configuration within the x86 Intel perf subsystem. The validation for the user space ACR mask
attr.config2 is incomplete, allowing the mask to include indices belonging to other ACR events groups. Additionally, an early return triggered by an invalid ACR mask causes subsequent ACR groups to be skipped, and the stale hardware ACR mask hw.config1 is not cleared before a new mask is applied.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Incomplete List of Disallowed Inputs
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linux Kernel
Ubuntu