Race condition in Linux kernel - CVE-2026-92487
Published: September 18, 2026
Vulnerability details
The vulnerability allows a local user to cause data corruption.
The vulnerability exists due to a race condition in exfat valid_size extension for shared writable memory mappings when a buffered write or page fault extends valid_size. A local user can race a store through a shared writable mapping with page-cache gap zeroing to cause data corruption.