PT-2026-98794 · Linux · Linux
CVE-2026-98132
·
Published
2026-09-25
·
Updated
2026-09-30
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
An issue exists in the BPF (Berkeley Packet Filter) subsystem where the
clean func state() function in states.c can incorrectly downgrade a scalar zero spill to STACK ZERO. This occurs when a portion of the stack memory is considered dead, causing the verifier to change the scalar spill to a combination of zero and poison values. This behavior breaks precision propagation chains, which are mechanisms used by the verifier to track the known bits of a register to ensure memory safety.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux