Improper resource shutdown or release in Linux kernel - CVE-2026-90097
Published: September 19, 2026
Vulnerability details
The vulnerability allows a local privileged user to cause a denial of service.
The vulnerability exists due to improper cleanup of uninitialized resources in the VMBus module exit function when unloading the VMBus module on a non-nested root partition. A local privileged user can unload the VMBus module to cause a denial of service.