Infinite loop in Linux kernel - CVE-2026-97985
Published: September 28, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper state management in the AF_UNIX stream socket out-of-band data handling when processing MSG_PEEK receive operations after skipped out-of-band socket buffers. A local user can send out-of-band data and issue MSG_PEEK receive calls to cause a denial of service.