PT-2026-72863 · Linux · Linux Kernel
CVE-2026-74427
·
Published
2026-08-15
·
Updated
2026-08-18
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
An issue exists in the afs network namespace teardown process where the work item responsible for keeping the preallocated rxrpc call, connection, and peer queue charged is not cancelled before incoming calls are disabled. Additionally, when the network namespace is being deleted and
net->live is false, the afs charge preallocation() function may fail to skip charging, and the afs rx new call() function may incorrectly requeue the charger.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel