Use-after-free in Linux kernel - CVE-2026-89546
Published: September 12, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to a use-after-free race condition in the SUNRPC backchannel request handling and NFS callback service teardown when a backchannel request completes while the callback service is being torn down. A remote attacker can cause a backchannel request to complete during callback-service teardown to cause a denial of service.