Race condition in Linux kernel - CVE-2026-93096

 

Race condition in Linux kernel - CVE-2026-93096

Published: September 18, 2026


Vulnerability identifier: #VU150919
CSH Severity: Low
CVSS v4: 2 [CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-93096
CWE-ID: CWE-362
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to corrupt the device's transfer context.

The vulnerability exists due to a race condition in cxl_get_feature() and cxl_set_feature() when concurrent multi-part Get or Set Feature transfers are processed. A local user can issue concurrent feature requests to corrupt the device's transfer context.

The issue affects transfers whose payloads exceed the mailbox payload size.


Affected software

Linux kernel

How to mitigate CVE-2026-93096

Install security update from vendor's repository.


External References

Related Security Bulletins