Race condition in Linux kernel - CVE-2026-97567
Published: September 28, 2026
Vulnerability details
The vulnerability allows a local user to cause inconsistent connection status.
The vulnerability exists due to a race condition in the MPTCP disconnect handling in net/mptcp/protocol.c when disconnecting an MPTCP socket while its retransmission timer is running. A local user can trigger the concurrent disconnect and retransmission timer operations to cause inconsistent connection status.