Use-after-free in Linux kernel - CVE-2026-90270
Published: September 18, 2026
Vulnerability details
The vulnerability allows a local user to trigger a use-after-free.
The vulnerability exists due to a use-after-free in the MPAM component handling of resctrl_arch_get_config() when unbinding an MSC that is the only MSC for a component and then reading the resctrl schemata file. A local user can unbind an MSC and read the schemata file to trigger a use-after-free.