Race Condition in Linux Kernel's Classifier API Affecting Multiple Filter Types
CVE-2026-74700

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
22 August 2026

What is CVE-2026-74700?

A vulnerability in the Linux kernel's classifier API allows for a race condition that can lead to use-after-free scenarios. Specifically, due to an incorrect locking mechanism when destroying locked classifiers, an attacker could exploit a flaw where multiple threads access and modify filter types concurrently. This results in unexpected references and potentially destabilizes the kernel. To mitigate this risk, it's essential to ensure proper locking during classifier destruction, thereby preventing unauthorized memory access and ensuring system stability.

Affected Version(s)

Linux 12db03b65c2b90752e4c37666977fd4a1b5f5824 < 34e77d8e3570f9df3952496ddb402833695662fd

Linux 12db03b65c2b90752e4c37666977fd4a1b5f5824

Linux 12db03b65c2b90752e4c37666977fd4a1b5f5824

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.