Always-Incorrect Control Flow Implementation in Linux kernel - CVE-2026-31734
Published: May 2, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper state handling in is_bpf_migration_disabled() when checking whether a task is migration-disabled on systems without CONFIG_PREEMPT_RCU. A local user can trigger task dispatch to a remote CPU for a migration-disabled task to cause a denial of service.
The issue can trigger scx_error in task_can_run_on_remote_rq().