PT-2026-98044 · Linux · Linux
CVE-2026-97410
·
Published
2026-09-24
·
Updated
2026-09-24
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
In the Linux kernel, the following vulnerability has been resolved:
netconsole: take target cleanup list lock in drop netconsole target()
drop netconsole target() unlinks the target while only holding
target list lock. However, when the underlying interface has been
unregistered, netconsole netdev event() moves the target from
target list to target cleanup list, and netconsole process cleanups core()
walks that list under target cleanup list lock only.
If a user removes the configfs target at the same time the cleanup
worker is iterating target cleanup list, list del() can corrupt the list
because the two paths take disjoint locks while operating on the same
list node.
Acquire target cleanup list lock around the list del() so the unlink is
serialised against netconsole process cleanups core() regardless of
which list the target currently belongs to. The state transition that
downgrades STATE DEACTIVATED to STATE DISABLED is left intact and is
performed under the same combined locking, preserving the existing
ordering with resume target().
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux