Use-after-free in Linux kernel - CVE-2026-89682
Published: September 12, 2026
Vulnerability details
The vulnerability allows a local user to cause a use-after-free.
The vulnerability exists due to a use-after-free in the NFS server file cache disposal queue when file disposal occurs during per-network namespace teardown. A local user can trigger deferred file disposal while callbacks access the disposal queue to cause a use-after-free.
The global shrinker, laundrette, and fsnotify callbacks can access the queue during teardown.