Use-after-free in Linux kernel - CVE-2026-64033
Published: July 20, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a use-after-free in rtrs_srv_create_path_files() cleanup logic when handling an error path during sysfs path file creation. A local user can trigger a failure in a later cleanup step to cause a denial of service.
The issue occurs before the function returns success, in a failure path where sysfs root folders may already exist and the kobject may already have been initialized.
How to mitigate CVE-2026-64033
Sources
- https://git.kernel.org/stable/c/00904a73272b9f3ef3952fe69a833909dccad1ef
- https://git.kernel.org/stable/c/01e42aabaf7632beb4bf235c7238b96c746d4144
- https://git.kernel.org/stable/c/548f3956e53a7f7bde912d8129010b8986d5e602
- https://git.kernel.org/stable/c/5b74373390113fba798a76b483837029ab010fef
- https://git.kernel.org/stable/c/92060ab1c5115674cf319175550f85f68405121f
- https://git.kernel.org/stable/c/b0e9706fb2859064bb6c677554c4d20c713aa8e0
- https://git.kernel.org/stable/c/eae62c5451e67e8b033c1681fd3b85d7e9a9a28f