Signed to Unsigned Conversion Error in Linux kernel - CVE-2026-97920
Published: September 28, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a signed-to-unsigned conversion error in the print_entries() cleanup path when reading the hist file of a trigger while histogram statistics allocation fails. A local user can read the hist file of a trigger with a .percent value to cause a denial of service.
The affected code path is not reachable in mainline while .percent and .graph modifiers are rejected for values.