Operation on a Resource after Expiration or Release in Linux kernel - CVE-2026-97961
Published: September 28, 2026
Vulnerability details
The vulnerability allows a local user to corrupt the scheduler callback list.
The vulnerability exists due to unsafe list iteration in perf_pmu_sched_task() when processing perf PMU scheduler callbacks. A local user can invoke PERF_EVENT_IOC_REFRESH on a perf event to corrupt the scheduler callback list.
The issue is triggered when the event limit reaches zero during perf event overflow processing.