Race condition in Linux kernel - CVE-2026-97553

 

Race condition in Linux kernel - CVE-2026-97553

Published: September 28, 2026


Vulnerability identifier: #VU152658
CSH Severity: Low
CVSS v4: 0 [CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-97553
CWE-ID: CWE-362
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to perform an unsynchronized insertion of an unmount event into the XFS health monitor event list.

The vulnerability exists due to a race condition in xfs_healthmon_unmount when inserting an unmount event into the health monitor event list. A local user can trigger an XFS unmount to perform an unsynchronized insertion of an unmount event into the XFS health monitor event list.


Affected software

Linux kernel

How to mitigate CVE-2026-97553

Install security update from vendor's repository.

Linux kernel - update to 7.0 rc3

External References

Related Security Bulletins