Use-after-free in Linux kernel - CVE-2026-53005
Published: June 25, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a use-after-free in the AF_UNIX SOCKMAP handling and garbage collection logic when processing socket buffers carrying SCM file descriptor attributes through SOCKMAP. A local user can send crafted AF_UNIX messages with SCM file descriptor attributes through SOCKMAP to cause a denial of service.
The issue arises because redirected socket buffers are not visible to AF_UNIX garbage collection, and user interaction is not required.
Affected software
Debian Linux
Red Hat Enterprise Linux for ARM 64
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for x86_64
Ubuntu
kernel (Red Hat package)
linux-nvidia-tegra (Ubuntu package)
linux (Debian package)
linux (Ubuntu package)
linux-ibm (Ubuntu package)
linux-azure (Ubuntu package)
linux-aws (Ubuntu package)
linux-oem-7.0 (Ubuntu package)
linux-gcp-7.0 (Ubuntu package)
linux-oracle-7.0 (Ubuntu package)
linux-azure-7.0 (Ubuntu package)
linux-nvidia (Ubuntu package)
linux-nvidia-bos (Ubuntu package)
How to mitigate CVE-2026-53005
kernel (Red Hat package) - update to 5.14.0-687.51.1.el9_8
linux-nvidia-tegra (Ubuntu package) - update to 6.8.0-1035.38
linux (Debian package) - update to 6.12.100-1
linux (Ubuntu package) - addressed in versions 7.0.0-28.28, 7.0.0-28.28.1, 7.0.0-1003.4, 7.0.0-1008.8
linux-ibm (Ubuntu package) - addressed in versions 7.0.0-1008.8, 7.0.0-1010.10
linux-azure (Ubuntu package) - addressed in versions 7.0.0-1009.9, 7.0.0-1010.10
linux-aws (Ubuntu package) - addressed in versions 7.0.0-1009.9, 7.0.0-1015.15
linux-oem-7.0 (Ubuntu package) - update to 7.0.0-1009.9
linux-gcp-7.0 (Ubuntu package) - update to 7.0.0-1011.11~24.04.1
linux-oracle-7.0 (Ubuntu package) - update to 7.0.0-1011.11~24.04.1
linux-azure-7.0 (Ubuntu package) - update to 7.0.0-1014.14~24.04.1
linux-nvidia (Ubuntu package) - addressed in versions 7.0.0-1016.16, 7.0.0-1016.16~24.04.1
linux-nvidia-bos (Ubuntu package) - update to 7.0.0-2016.16
External References
Related Security Bulletins
- Use-after-free in Linux kernel unix
- Ubuntu update for linux-oem-7.0
- Ubuntu update for linux
- Ubuntu update for linux-ibm
- Ubuntu update for linux-azure
- Ubuntu update for linux-aws
- Debian update for linux
- Ubuntu update for linux-nvidia-bos
- Ubuntu update for linux-nvidia
- Ubuntu update for linux-gcp-7.0
- Red Hat Enterprise Linux 9 update for kernel
- Ubuntu update for linux-oracle-7.0
- Ubuntu update for linux-azure-7.0
- Ubuntu update for linux-nvidia-tegra