Use-after-free in Linux kernel - CVE-2026-31769

 

Use-after-free in Linux kernel - CVE-2026-31769

Published: May 2, 2026


Vulnerability identifier: #VU128919
CSH Severity: Low
CVSS v4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-31769
CWE-ID: CWE-416
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to cause a denial of service.

The vulnerability exists due to use-after-free in gpib IO ioctl handlers when processing concurrent ioctl operations on the same descriptor. A local user can trigger IBRD, IBWRT, IBCMD, or IBWAIT while concurrently issuing IBCLOSEDEV to cause a denial of service.

The issue arises because the descriptor can become unprotected after the mutex is released, and multiple threads can operate on the same descriptor concurrently.


Affected software

Linux kernel

How to mitigate CVE-2026-31769

Install security update from vendor's repository.

Linux kernel - update to 7.0 rc3

External References

Related Security Bulletins