Use-after-free in Linux kernel - CVE-2026-80833
Published: September 5, 2026
Vulnerability details
The vulnerability allows a local user to cause a use-after-free.
The vulnerability exists due to failure to stop a DMA operation after an interrupted wait in the sun8i-ss PRNG generate function when a PRNG generation operation is interrupted by a signal. A local user can interrupt a pending PRNG generation operation by sending a signal to cause a use-after-free.
The issue is limited to systems with sun8i-ss PRNG support enabled.