Missing release of memory after effective lifetime in Linux kernel - CVE-2026-23389

 

Missing release of memory after effective lifetime in Linux kernel - CVE-2026-23389

Published: March 25, 2026


Vulnerability identifier: #VU124447
CSH Severity: Low
CVSS v4 BT: 1.1 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:U/U:Clear]
CVE-ID: CVE-2026-23389
CWE-ID: CWE-401
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to cause a denial of service.

The vulnerability exists due to improper memory management in the ice_set_ringparam() function when processing ring parameter configuration. A local user can trigger improper memory deallocation to cause a denial of service.

Exploitation requires access to the network interface control functionality, which is typically available to local users with network configuration privileges.


Affected software

Linux kernel
Debian Linux
openEuler
Ubuntu
perf
kernel
python3-perf-debuginfo
python3-perf
perf-debuginfo
kernel-tools-devel
kernel-tools-debuginfo
kernel-tools
kernel-source
kernel-headers
kernel-devel
kernel-debugsource
kernel-debuginfo
bpftool-debuginfo
bpftool
kernel-extra-modules
linux (Ubuntu package)
linux-fips (Ubuntu package)
linux-hwe-6.8 (Ubuntu package)
linux-ibm (Ubuntu package)
linux-oracle-6.8 (Ubuntu package)
linux-nvidia (Ubuntu package)
linux-aws-6.8 (Ubuntu package)
linux-aws (Ubuntu package)
linux-azure-fde (Ubuntu package)
linux-azure-fde-6.8 (Ubuntu package)
linux-azure (Ubuntu package)
linux-azure-fips (Ubuntu package)
linux-gcp-fips (Ubuntu package)
linux (Debian package)

How to mitigate CVE-2026-23389

Install security update from vendor's repository.

Linux kernel - update to 7.0 rc3
perf - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
python3-perf-debuginfo - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
python3-perf - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
perf-debuginfo - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-tools-devel - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-tools-debuginfo - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-tools - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-source - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-headers - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-devel - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-debugsource - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-debuginfo - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
bpftool-debuginfo - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
bpftool - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-extra-modules - addressed in versions 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
linux (Ubuntu package) - addressed in versions 6.8.0-136.136, 6.8.0-1046.50, 6.8.0-1059.67, 6.8.0-1064.72, 6.8.0-1064.72~22.04.1, 6.8.1-1056.57, 6.8.1-1056.57~22.04.2
linux-fips (Ubuntu package) - addressed in versions 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61
linux-hwe-6.8 (Ubuntu package) - update to 6.8.0-136.136~22.04.1
linux-ibm (Ubuntu package) - addressed in versions 6.8.0-1030.31, 6.8.0-1033.34, 6.8.0-1061.62, 6.8.0-1061.62~22.04.1
linux-oracle-6.8 (Ubuntu package) - update to 6.8.0-1058.61~22.04.1
linux-nvidia (Ubuntu package) - addressed in versions 6.8.0-1059.62, 6.8.0-1059.62.1, 6.8.0-1059.62~22.04.1
linux-aws-6.8 (Ubuntu package) - addressed in versions 6.8.0-1061.64+fips1, 6.8.0-1061.64~22.04.1
linux-aws (Ubuntu package) - update to 6.8.0-1061.64+1
linux-azure-fde (Ubuntu package) - update to 6.8.0-1062.69
linux-azure-fde-6.8 (Ubuntu package) - update to 6.8.0-1062.69~22.04.1
linux-azure (Ubuntu package) - addressed in versions 6.8.0-1063.71, 6.8.0-1063.71~22.04.1
linux-azure-fips (Ubuntu package) - update to 6.8.0-1063.71+fips2
linux-gcp-fips (Ubuntu package) - update to 6.8.0-1064.72+fips1
linux (Debian package) - update to 6.12.85-1

External References

Related Security Bulletins