PT-2026-93589 · Linux · Linux Kernel

CVE-2026-89948

·

Published

2026-09-16

·

Updated

2026-09-24

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the batman-adv BLA (Border Gateway Advertisement) component during the deletion of a mesh interface. The function batadv bla del backbone claims() (called via batadv bla purge backbone gw()) fails to execute because batadv bla free() sets bat priv->bla.claim hash to NULL before the call. Additionally, the process involving batadv bla purge claims() and batadv handle unclaim() is unstable because the BLA code does not handle rehashing in batadv bla update orig address(). This can cause batadv handle unclaim() to fail when searching for the respective backbone, thereby halting the deletion of claims.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-101697
CVE-2026-89948
OPENSUSE-SU-2026:11880-1

Affected Products

Linux Kernel