Stack-based buffer overflow in Linux kernel - CVE-2026-90358
Published: September 18, 2026
Vulnerability details
The vulnerability allows a local user to overwrite adjacent stack slots.
The vulnerability exists due to a stack-based buffer overflow in the x86 BPF trampoline register save area when handling a 128-bit scalar function argument. A local user can trigger a BPF trampoline with a 128-bit scalar argument to overwrite adjacent stack slots.