Race condition in Linux kernel - CVE-2026-97410
Published: September 25, 2026
Vulnerability details
The vulnerability allows a local user to corrupt a kernel list.
The vulnerability exists due to improper synchronization in drop_netconsole_target() when removing a configfs target concurrently with cleanup processing after the underlying interface is unregistered. A local user can remove a configfs target while cleanup processing iterates the target cleanup list to corrupt a kernel list.