Use-after-free in Linux kernel - CVE-2026-43232
Published: May 7, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to use-after-free in the FarSync WAN driver tasklet handlers when detaching a FarSync T-series card while scheduled tasklets are still running or pending. A local user can trigger device removal during tasklet processing to cause a denial of service.
The issue is caused by a race condition between cleanup in fst_remove_one() and the fst_tx_task or fst_int_task tasklets accessing fst_card_info in fst_process_tx_work_q() or fst_process_int_work_q().
How to mitigate CVE-2026-43232
Sources
- https://git.kernel.org/stable/c/04edfdfdfcdefc02408ab670607261b0a0a9a02e
- https://git.kernel.org/stable/c/086131807d119238cd464e5b0845e48d938dfd79
- https://git.kernel.org/stable/c/200bdb8d367ca9b478f9c56ebe56411604d55c81
- https://git.kernel.org/stable/c/21d341fe514fd07e345ed264c9eee21cb2061ca2
- https://git.kernel.org/stable/c/337d7b4112a47984ee319171b75b73bab47e7924
- https://git.kernel.org/stable/c/ae894e47e1cd5a6bf8a0423d888c45df8b2b02dc
- https://git.kernel.org/stable/c/bae8a5d2e759da2e0cba33ab2080deee96a09373
- https://git.kernel.org/stable/c/cac048ebfbb92d91d719f74b59177cb70a7633b8