Use-After-Free Vulnerability in Linux Kernel Affecting AppArmor
CVE-2026-63827

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
19 July 2026

What is CVE-2026-63827?

A use-after-free vulnerability exists in the AppArmor component of the Linux kernel, specifically in the handling of profile load data. The issue arises when the raw data deduplication process encounters profiles that have dropped their reference count. If an entry remains on the list with a zero reference count, accessing it can lead to memory corruption and crashes. This vulnerability was reproduced under specific testing conditions and resolved through the introduction of a new function that correctly handles reference counts, preventing use-after-free scenarios.

Affected Version(s)

Linux 6b6ba87579c7e7c669e0bec91823e7fb693bc5df

Linux 6ef1f2926c41ab96952d9696d55a052f1b3a9418 < 15fd83a1e42ede15070968806bb6c8b1a5170688

Linux f9761add6d100962a23996cb68f3d6abdd4d1815

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.