Race Condition in Linux Kernel Affecting Driver Core and Device Resources
CVE-2026-89764
Currently unrated
What is CVE-2026-89764?
A race condition vulnerability has been identified in the Linux kernel driver core, where concurrent revocations of device resources can lead to a use-after-free scenario. This occurs when one thread attempts to revoke device resources while another thread is simultaneously dropping adjacent resources that the first thread still references. Such a flaw can destabilize kernel operations, leading to potential exploitation and data corruption. The vulnerability has been addressed by implementing a synchronization mechanism that ensures proper resource management during the revocation process.
Affected Version(s)
Linux 05aa6fb1c21d7fb9df735da24096d793223789d5
Linux 05aa6fb1c21d7fb9df735da24096d793223789d5
Linux 6.18