Improper control of a resource through its lifetime in Linux kernel - CVE-2026-46250
Published: June 4, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper control of a register used as a global register variable in arch/mips/kernel/relocate.c when relocating the kernel with LLVM/Clang on MIPS. A local user can trigger kernel relocation in a vulnerable environment to cause a denial of service.
The issue can cause an early kernel crash in init_idle on MIPS systems built with affected LLVM versions.
How to mitigate CVE-2026-46250
Sources
- https://git.kernel.org/stable/c/05bff9b0ae095b2420cfebb4a96759a09334bec6
- https://git.kernel.org/stable/c/1fe3b402b1e97a1718df3be0a1d3eee20133e735
- https://git.kernel.org/stable/c/30bfc2d6a1132a89a5f1c3b96c59cf3e4d076ea3
- https://git.kernel.org/stable/c/4dc65b40fb80c2020efbf139b9a38d30f9a37b92
- https://git.kernel.org/stable/c/561834f6d6f52b8a1791331e94b2aac753491d2a
- https://git.kernel.org/stable/c/9bc3b0ae5203aba650297fdf3e1e774125e423f2
- https://git.kernel.org/stable/c/c0155dee51b9f5f48aaf5c71cae005eb0e36521f
- https://git.kernel.org/stable/c/e3a6498a63394218561065a9a7a597a204f52f6a