Out-of-bounds write in Linux kernel - CVE-2026-89579
Published: September 12, 2026
Vulnerability details
The vulnerability allows a local privileged user to escalate privileges.
The vulnerability exists due to out-of-bounds memory access in the BPF bloom filter bitset allocation and indexing logic when processing BPF bloom filter map operations on 32-bit kernels. A local privileged user can create a bloom filter map with a maximal bitset and perform updates to escalate privileges.
Exploitation is possible on 32-bit x86 kernels from a binary with CAP_BPF.