PT-2026-98812 · Linux · Linux Kernel
CVE-2026-98150
·
Published
2026-09-25
·
Updated
2026-09-25
CVSS v3.1
7.0
High
| Vector | AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
An issue exists in the Linux kernel where
bpf map check op flags() incorrectly validates the target CPU ID stored in the upper 32 bits of map operation flags when BPF F CPU is used. The function compares the ID against num possible cpus(), which represents the total count of possible CPUs rather than the actual upper bound of CPU IDs. In environments with sparse CPU IDs, such as an arm64 QEMU guest with a device-tree hole, this can lead to the acceptance of invalid CPU IDs and the rejection of valid ones. When an invalid CPU ID is processed during update or lookup operations in a BPF MAP TYPE PERCPU ARRAY, it can trigger a kernel paging request failure within the bpf percpu array update() function and pi memcpy generic().Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel