Use-after-free in Linux kernel - CVE-2026-89747
Published: September 12, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to use-after-free in the trace_pipe read path when changing the ring buffer sub-buffer order while an event is being processed. A local user can change the sub-buffer order while a trace_pipe reader is dereferencing a peeked event to cause a denial of service.