Type Confusion in Linux kernel - CVE-2026-90177
Published: September 19, 2026
Vulnerability details
The vulnerability allows a local user to bypass pointer type verification.
The vulnerability exists due to improper pointer type validation in the BPF verifier's atomic read-modify-write verification when verifying atomic read-modify-write instructions. A local user can route an atomic read-modify-write instruction through paths with incompatible destination pointer types to bypass pointer type verification.