Use-after-free in Linux kernel - CVE-2026-90276
Published: September 18, 2026
Vulnerability details
The vulnerability allows a local user to trigger a use-after-free condition.
The vulnerability exists due to improper synchronization in the md llbitmap destruction path when daemon work rearms the pending timer during teardown. A local user can trigger llbitmap teardown while daemon work is queued or running to trigger a use-after-free condition.