PT-2026-8119 · Linux+2 · Linux Kernel+2

CVE-2026-23126

·

Published

2026-01-01

·

Updated

2026-08-23

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.19.0-rc5
Description The netdevsim driver lacks a protection mechanism for operations on the bpf bound progs list. Concurrent operations, specifically nsim bpf create prog() performing list add tail and nsim bpf destroy prog() performing list del, can lead to list corruption and a kernel crash. The crash occurs due to a race condition when adding and deleting entries from the list simultaneously. The list del entry valid or report function is implicated in the crash.
Recommendations Update to a version newer than 6.19.0-rc5.

Exploit

Fix

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-77682
BDU:2026-11587
CVE-2026-23126
OESA-2026-1760
OESA-2026-1832
OESA-2026-1833
USN-8278-1
USN-8278-2
USN-8289-1
USN-8289-2
USN-8296-1
USN-8296-2
USN-8393-1
USN-8440-1
USN-8499-1
USN-8570-1
USN-8570-2
USN-8594-1
USN-8604-1
USN-8605-1
USN-8669-1

Affected Products

Linuxmint
Linux Kernel
Ubuntu