Improper access control in Linux kernel - CVE-2026-43498
Published: May 22, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause data corruption.
The vulnerability exists due to improper access control in GEM buffer export handling when re-exporting imported GEM objects. A local user can re-export an imported GEM buffer to cause data corruption.
The issue can also lead to incorrect device access because buffer flag settings are lost during re-export.