Vulnerability in Linux Kernel's J1939 Networking Module
CVE-2026-22997

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
25 January 2026

What is CVE-2026-22997?

A vulnerability exists in the Linux kernel's J1939 networking module where improper handling of session state leads to resource management issues. Specifically, if a session is deactivated upon receiving a second RTS (Request to Send), the session's reference count may leak due to failure in invoking necessary session management routines when the associated timer is cancelled. This oversight can result in network devices being held up in an active state, making it impossible to unregister them, thus hindering network management and potentially exposing systems to further risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Linux 9d71dd0c70099914fcd063135da3c580865e924c

Linux 9d71dd0c70099914fcd063135da3c580865e924c < 6121b7564c725b632ffe4764abe85aa239d37703

Linux 9d71dd0c70099914fcd063135da3c580865e924c < 1809c82aa073a11b7d335ae932d81ce51a588a4a

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.