Race condition in Linux kernel - CVE-2026-97617
Published: September 28, 2026
Vulnerability details
The vulnerability allows a local user to cause an out-of-bounds memory mapping.
The vulnerability exists due to a race condition in ring_buffer_subbuf_order_set() when an mmap operation races a failing sub-buffer order change. A local user can race an mmap of an already mapped CPU with a sub-buffer order change to cause an out-of-bounds memory mapping.