Improper access control in Linux kernel - CVE-2026-98047

 

Improper access control in Linux kernel - CVE-2026-98047

Published: September 28, 2026


Vulnerability identifier: #VU152429
CSH Severity: Low
CVSS v4: 4.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-98047
CWE-ID: CWE-284
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to cause memory corruption.

The vulnerability exists due to improper enforcement of rbtree callback restrictions in the BPF verifier's in_rbtree_lock_required_cb() function when executing static subprogram calls from bpf_rbtree_add() comparator callbacks. A local user can release the root lock, remove and drop the node being compared, and relock the tree, causing native insertion to use stale pointers to freed memory.


Affected software

Linux kernel

How to mitigate CVE-2026-98047

Install security update from vendor's repository.

Linux kernel - update to 7.0 rc3

External References

Related Security Bulletins