Linux Kernel Vulnerability in User-Space Daemon Interaction
CVE-2026-89793

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
16 September 2026

What is CVE-2026-89793?

A vulnerability in the Linux kernel allows user-space daemons to perform unauthorized memory mappings. The issue arises from the ublk driver, where mmap requests on read-only mappings retain the VM_MAYWRITE flag. Consequently, an attacker can exploit this flaw to upgrade a read-only mapping to writable using mprotect(). This results in potential corruption of critical kernel fields, which can compromise system stability and security. The vulnerability has been rectified, reinforcing the integrity of the mapping process and enhancing overall system safety.

Affected Version(s)

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 5befd06a72216869b607cf7724a4f16c6a2d3999

Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.