Use-after-free in Linux kernel - CVE-2026-80556

 

Use-after-free in Linux kernel - CVE-2026-80556

Published: August 27, 2026


Vulnerability identifier: #VU145933
CSH Severity: Low
CVSS v4: 8.5 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-80556
CWE-ID: CWE-416
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to execute arbitrary code.

The vulnerability exists due to a use-after-free in the atmci_remove function in the atmel-mci driver when removing the module while queued or running bh_work is still pending. A local user can trigger a race condition during module removal to execute arbitrary code.

The issue arises because the interrupt handler, timeout timer, or DMA completion callback can schedule the work item before cleanup completes.


Affected software

Linux kernel

How to mitigate CVE-2026-80556

Install security update from vendor's repository.

Linux kernel - update to 7.0 rc3

External References

Related Security Bulletins