Memory corruption in Linux kernel - CVE-2026-89905
Published: September 17, 2026
Vulnerability details
The vulnerability allows a local user to cause memory corruption.
The vulnerability exists due to improper stack layout handling in the LoongArch BPF JIT prologue and epilogue when compiling BPF programs. A local user can load a BPF program for JIT compilation to cause memory corruption.
Exploitation requires arena_vm_start to be dynamically enabled.