PT-2026-94463 · Linux · Linux Kernel

CVE-2026-90115

·

Published

2026-09-17

·

Updated

2026-09-24

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A NULL pointer dereference exists in the xsk rcv() function within the multi-buffer path. The issue occurs because xsk buff alloc() is called in a loop without verifying its return value. While xsk buff can alloc() counts fill queue entries, it does not validate their addresses, allowing it to succeed even when xsk buff alloc() rejects all remaining entries and returns NULL.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-102068
CVE-2026-90115
OPENSUSE-SU-2026:11880-1

Affected Products

Linux Kernel