Improper locking in Linux kernel - CVE-2026-43234
Published: May 7, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper state handling in the team driver when unregistering a slave network device. A local user can move a team slave device to another network namespace and delete it to cause a denial of service.
The issue can lead to a netdevice reference leak and the kernel waiting for the device to become free.