SB2026091823 - Improper control of a resource through its lifetime in Linux kernel events intel
Published: September 18, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Improper control of a resource through its lifetime (CVE-ID: CVE-2026-93181)
CWE-ID: CWE-664 - Improper control of a resource through its lifetime
CVSSv4: 4.6 [CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
The vulnerability allows a local privileged user to disrupt uncore event collection.
The vulnerability exists due to improper resource lifetime management in the Intel x86 uncore event handling code when CPUs transition online or offline. A local privileged user can trigger CPU online or offline events to disrupt uncore event collection.
On systems with one CPU per die, an uncore box can remain uninitialized.
Remediation
Install update from vendor's website.