Race condition in Linux kernel - CVE-2026-89719
Published: September 12, 2026
Vulnerability details
The vulnerability allows a local user to perform an out-of-bounds access.
The vulnerability exists due to a race condition in read_block_state() when reading block state information while a zram device is reset and reinitialized with a smaller disk size. A local user can read block state information during this condition to perform an out-of-bounds access.