Improper control of a resource through its lifetime in Linux kernel - CVE-2026-98074
Published: September 28, 2026
Vulnerability details
The vulnerability allows a local privileged user to leave a physical device in promiscuous mode after bond teardown.
The vulnerability exists due to improper state management in __bond_release_one() when releasing all slaves during bond destruction. A local privileged user can destroy a bond containing active and backup slaves to leave a physical device in promiscuous mode after bond teardown.
The backup slave must be released before the active slave.