Use-After-Free Vulnerability in Linux Kernel Network Stack
CVE-2026-98370
What is CVE-2026-98370?
A vulnerability in the Linux kernel's handling of xfrm ALLOCSPI requests has been identified, leading to a potential use-after-free condition. This issue arises during the processing of compatibility requests where the xfrm_state_netlink function manages response construction using the dump_one_state method. A redundant call to alloc_compat can lead to unintended memory access, wherein the kernel interpreter misreads payload sizes, thereby exposing free memory areas to malicious processes. This could potentially allow an attacker to exploit the vulnerability during concurrent operations, leading to significant security implications.
Affected Version(s)
Linux 5f3eea6b7e8f58cf5c8a9d4b9679dc19e9e67ba3 < 494f2bee9d8d0ebcfa249ac41bed7fed26d119b4
Linux 5f3eea6b7e8f58cf5c8a9d4b9679dc19e9e67ba3 < 17893987e52918c23945c42e47e894a936305a25
Linux 5f3eea6b7e8f58cf5c8a9d4b9679dc19e9e67ba3 < 42971ea17c7a8afc0bdd5ca40648bf4e5bb7b810