Use-after-free in Linux kernel - CVE-2026-80688
Published: August 28, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to use-after-free in vec_check_unaligned_access_speed_all_cpus when executing a kernel thread after the .init.text section has been unmapped during boot completion. A local user can trigger the vulnerable code path to cause a denial of service.
The issue can result in an instruction page fault in the kernel if the asynchronous probing operation is still running when free_initmem() unmaps the freed region.