BPF Instruction Handling Issue in Linux Kernel by Linux Foundation
CVE-2026-93270

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
24 September 2026

What is CVE-2026-93270?

The Linux Kernel contains a vulnerability associated with the handling of BPF (Berkeley Packet Filter) instructions. Specifically, when executing the BPF_MOV64_PERCPU_REG instruction, the interpreter erroneously ignores a base offset, leading to incorrect memory access. This oversight can cause the system to experience a page fault, compromising user operations and potentially affecting system stability.

Affected Version(s)

Linux 7bdbf7446305cb65c510c16d57cde82bc76b234a < 57cf929a33cb76be3f24886073ae820b4c496914

Linux 7bdbf7446305cb65c510c16d57cde82bc76b234a < 7a0855e73757ee9cf25ba635a1c735018ecba742

Linux 6.10

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.