Improper access control in Linux kernel - CVE-2026-89745
Published: September 12, 2026
Vulnerability details
The vulnerability allows a local user to bypass debugfs lockdown protections.
The vulnerability exists due to improper access control in the debugfs lockdown check when accessing a debugfs file that uses mmap_prepare. A local user can use the file's mmap functionality to bypass debugfs lockdown protections.
The issue occurs when the kernel is operating in integrity lockdown mode.