Improper locking in Linux kernel - CVE-2026-31691
Published: April 27, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper state management in igb_down() when handling abrupt termination of an AF_XDP zero-copy application. A local user can terminate the application abruptly to cause a denial of service.
The issue can leave the TX queue permanently stalled because NAPI polling continues and igb_down() blocks indefinitely.