Linux Kernel Vulnerability Affects Data Length Reporting
CVE-2026-80876

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
4 September 2026

What is CVE-2026-80876?

This vulnerability in the Linux kernel involves incorrect reporting of data lengths for small events when RB_FORCE_8BYTE_ALIGNMENT is enabled. Specifically, when this setting is true, the system reserves space incorrectly, causing events to report a data length that is consistently 4 bytes larger than expected under certain conditions. This has been observed in architectures like riscv64 during ftrace selftest execution, leading to unexpected behavior and log outputs. The issue requires precise handling of the event length calculations to prevent inconsistencies in data reporting.

Affected Version(s)

Linux 2271048d1b3b0aabf83d25b29c20646dcabedc05 < 7c9f0ccf9f04142458d2ac3d39414f4acae242f0

Linux 2271048d1b3b0aabf83d25b29c20646dcabedc05 < 24c3fa71f9947b0e1f3b954db1b769b44140192e

Linux 2271048d1b3b0aabf83d25b29c20646dcabedc05 < 14057268e79654c3e8ea2c9b5204cb9644b2964d

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.