Deadlock in Linux kernel - CVE-2026-80920
Published: September 9, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper locking in io_uring CQ ring eventfd signaling when task work is queued from a waitqueue wakeup handler. A local user can submit io_uring operations that queue task work from a waitqueue wakeup handler to cause a denial of service.
The issue affects DEFER_TASKRUN rings with CQ ring eventfd signaling.