Out-of-Bounds Message Handler Vulnerability in Linux Kernel by Linux Foundation
CVE-2026-80885

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
4 September 2026

What is CVE-2026-80885?

A flaw was identified in the Linux kernel associated with the AFS component where the out-of-bounds (OOB) message handler was not properly canceled. This allowed for potential misuse in handling security challenges. The fix ensures that OOB message processing is properly managed by integrating it into the afs_wq, ensuring that if the network namespace is inactive, the handler will exit effectively, thus enhancing overall security.

Affected Version(s)

Linux 5800b1cf3fd8ccab752a101865be1e76dac33142 < 231414253b648b3518b56f09710b831945d6a2fc

Linux 5800b1cf3fd8ccab752a101865be1e76dac33142

Linux 5800b1cf3fd8ccab752a101865be1e76dac33142

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.