Use-after-free in Linux kernel - CVE-2026-97536

 

Use-after-free in Linux kernel - CVE-2026-97536

Published: September 28, 2026


Vulnerability identifier: #VU152677
CSH Severity: Medium
CVSS v4: 7.7 [CVSS:4.0/AV:A/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-97536
CWE-ID: CWE-416
Exploitation vector: Adjecent network
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to compromise confidentiality, integrity, and availability.

The vulnerability exists due to use-after-free in the qla2xxx response queue work handling when tearing down a response queue with queued response work. A remote attacker can exploit the race condition during queue teardown to compromise confidentiality, integrity, and availability.

The condition is especially likely during full adapter teardown, which forces pending work to run after queue pairs have been freed.


Affected software

Linux kernel

How to mitigate CVE-2026-97536

Install security update from vendor's repository.

Linux kernel - update to 7.0 rc3

External References

Related Security Bulletins