Use-after-free in Linux kernel - CVE-2026-31769

 

Use-after-free in Linux kernel - CVE-2026-31769

Published: May 2, 2026


Vulnerability identifier: #VU128919
CSH Severity: Low
CVSS v4.0: CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2026-31769
CWE-ID: CWE-416
Exploitation vector: Local access
Exploit availability: No public exploit available
Vendor: Linux Foundation
Affected software:
Linux kernel

Detailed vulnerability description

The vulnerability allows a local user to cause a denial of service.

The vulnerability exists due to use-after-free in gpib IO ioctl handlers when processing concurrent ioctl operations on the same descriptor. A local user can trigger IBRD, IBWRT, IBCMD, or IBWAIT while concurrently issuing IBCLOSEDEV to cause a denial of service.

The issue arises because the descriptor can become unprotected after the mutex is released, and multiple threads can operate on the same descriptor concurrently.


How to mitigate CVE-2026-31769

Install security update from vendor's repository.

Sources