PT-2026-98044 · Linux · Linux

CVE-2026-97410

·

Published

2026-09-24

·

Updated

2026-09-24

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
In the Linux kernel, the following vulnerability has been resolved:
netconsole: take target cleanup list lock in drop netconsole target()
drop netconsole target() unlinks the target while only holding target list lock. However, when the underlying interface has been unregistered, netconsole netdev event() moves the target from target list to target cleanup list, and netconsole process cleanups core() walks that list under target cleanup list lock only.
If a user removes the configfs target at the same time the cleanup worker is iterating target cleanup list, list del() can corrupt the list because the two paths take disjoint locks while operating on the same list node.
Acquire target cleanup list lock around the list del() so the unlink is serialised against netconsole process cleanups core() regardless of which list the target currently belongs to. The state transition that downgrades STATE DEACTIVATED to STATE DISABLED is left intact and is performed under the same combined locking, preserving the existing ordering with resume target().
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-97410

Affected Products

Linux