Use-after-free in Linux kernel - CVE-2026-89970

 

Use-after-free in Linux kernel - CVE-2026-89970

Published: September 16, 2026


Vulnerability identifier: #VU150320
CSH Severity: High
CVSS v4: 9.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-89970
CWE-ID: CWE-416
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to compromise confidentiality, integrity, and availability.

The vulnerability exists due to improper synchronization of delayed work in the NVMe target authentication submission queue teardown logic when an authentication timeout callback runs during submission queue teardown. A remote attacker can cause the authentication timeout work to race with submission queue teardown to compromise confidentiality, integrity, and availability.


Affected software

Linux kernel

How to mitigate CVE-2026-89970

Install security update from vendor's repository.


External References

Related Security Bulletins