Missing release of memory after effective lifetime in Linux kernel - CVE-2026-23389
Published: March 25, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper memory management in the ice_set_ringparam() function when processing ring parameter configuration. A local user can trigger improper memory deallocation to cause a denial of service.
Exploitation requires access to the network interface control functionality, which is typically available to local users with network configuration privileges.
Affected software
Debian Linux
openEuler
Ubuntu
perf
kernel
python3-perf-debuginfo
python3-perf
perf-debuginfo
kernel-tools-devel
kernel-tools-debuginfo
kernel-tools
kernel-source
kernel-headers
kernel-devel
kernel-debugsource
kernel-debuginfo
bpftool-debuginfo
bpftool
kernel-extra-modules
linux (Ubuntu package)
linux-fips (Ubuntu package)
linux-hwe-6.8 (Ubuntu package)
linux-ibm (Ubuntu package)
linux-oracle-6.8 (Ubuntu package)
linux-nvidia (Ubuntu package)
linux-aws-6.8 (Ubuntu package)
linux-aws (Ubuntu package)
linux-azure-fde (Ubuntu package)
linux-azure-fde-6.8 (Ubuntu package)
linux-azure (Ubuntu package)
linux-azure-fips (Ubuntu package)
linux-gcp-fips (Ubuntu package)
linux (Debian package)
How to mitigate CVE-2026-23389
perf - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
python3-perf-debuginfo - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
python3-perf - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
perf-debuginfo - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-tools-devel - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-tools-debuginfo - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-tools - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-source - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-headers - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-devel - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-debugsource - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-debuginfo - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
bpftool-debuginfo - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
bpftool - addressed in versions 5.10.0-309.0.0.212, 6.6.0-145.0.3.131, 6.6.0-145.0.3.143, 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
kernel-extra-modules - addressed in versions 6.6.0-145.0.3.144, 6.6.0-145.3.14.145
linux (Ubuntu package) - addressed in versions 6.8.0-136.136, 6.8.0-1046.50, 6.8.0-1059.67, 6.8.0-1064.72, 6.8.0-1064.72~22.04.1, 6.8.1-1056.57, 6.8.1-1056.57~22.04.2
linux-fips (Ubuntu package) - addressed in versions 6.8.0-136.136+fips2, 6.8.0-136.136.2, 6.8.0-136.136.2~22.04.1, 6.8.0-1058.61
linux-hwe-6.8 (Ubuntu package) - update to 6.8.0-136.136~22.04.1
linux-ibm (Ubuntu package) - addressed in versions 6.8.0-1030.31, 6.8.0-1033.34, 6.8.0-1061.62, 6.8.0-1061.62~22.04.1
linux-oracle-6.8 (Ubuntu package) - update to 6.8.0-1058.61~22.04.1
linux-nvidia (Ubuntu package) - addressed in versions 6.8.0-1059.62, 6.8.0-1059.62.1, 6.8.0-1059.62~22.04.1
linux-aws-6.8 (Ubuntu package) - addressed in versions 6.8.0-1061.64+fips1, 6.8.0-1061.64~22.04.1
linux-aws (Ubuntu package) - update to 6.8.0-1061.64+1
linux-azure-fde (Ubuntu package) - update to 6.8.0-1062.69
linux-azure-fde-6.8 (Ubuntu package) - update to 6.8.0-1062.69~22.04.1
linux-azure (Ubuntu package) - addressed in versions 6.8.0-1063.71, 6.8.0-1063.71~22.04.1
linux-azure-fips (Ubuntu package) - update to 6.8.0-1063.71+fips2
linux-gcp-fips (Ubuntu package) - update to 6.8.0-1064.72+fips1
linux (Debian package) - update to 6.12.85-1
External References
Related Security Bulletins
- Missing release of memory after effective lifetime in Linux kernel intel ice driver
- openEuler 22.03 LTS SP4 update for kernel
- openEuler 24.03 LTS SP2 update for kernel
- openEuler 24.03 LTS SP1 update for kernel
- openEuler 24.03 LTS update for kernel
- Debian update for linux
- openEuler 24.03 LTS SP3 update for kernel
- Ubuntu update for linux
- Ubuntu update for linux-gcp-fips
- Ubuntu update for linux-oracle-6.8
- Ubuntu update for linux-fips
- Ubuntu update for linux-nvidia
- Ubuntu update for linux-azure-fde-6.8
- Ubuntu update for linux-azure-fips
- Ubuntu update for linux-azure-fde
- Ubuntu update for linux-azure
- Ubuntu update for linux-aws
- Ubuntu update for linux-hwe-6.8
- Ubuntu update for linux-aws-6.8
- Ubuntu update for linux-ibm