Race condition in Linux kernel - CVE-2026-90084
Published: September 19, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a race condition in the octeontx2 VF driver's workqueue and network-device lifecycle when registering or removing a network device. A local user can cause the receive-mode callback to queue work on an uninitialized workqueue to cause a denial of service.