Race condition in Linux kernel - CVE-2026-90212
Published: September 19, 2026
Vulnerability details
The vulnerability allows a local privileged user to cause a denial of service.
The vulnerability exists due to improper handling of voluntary preemption in the arm64 EFI runtime-service handling code when invoking EFI runtime services. A local privileged user can invoke EFI runtime services to cause a denial of service.
The affected configuration requires arm64 software PAN and EFI runtime service support.