๐Ÿ” CVE Alert

CVE-2026-23404

UNKNOWN 0.0

apparmor: replace recursive profile removal with iterative approach

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: apparmor: replace recursive profile removal with iterative approach The profile removal code uses recursion when removing nested profiles, which can lead to kernel stack exhaustion and system crashes. Reproducer: $ pf='a'; for ((i=0; i<1024; i++)); do echo -e "profile $pf { \n }" | apparmor_parser -K -a; pf="$pf//x"; done $ echo -n a > /sys/kernel/security/apparmor/.remove Replace the recursive __aa_profile_list_release() approach with an iterative approach in __remove_profile(). The function repeatedly finds and removes leaf profiles until the entire subtree is removed, maintaining the same removal semantic without recursion.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Apr 1, 2026
Last Updated Apr 13, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
c88d4c7b049e87998ac0a9f455aa545cc895ef92 < 33959a491e9fd557abfa5fce5ae4637d400915d3 c88d4c7b049e87998ac0a9f455aa545cc895ef92 < 999bd704b0b641527a5ed46f0d969deff8cfa68b c88d4c7b049e87998ac0a9f455aa545cc895ef92 < 7eade846e013cbe8d2dc4a484463aa19e6515c7f c88d4c7b049e87998ac0a9f455aa545cc895ef92 < a6a941a1294ac5abe22053dc501d25aed96e48fe c88d4c7b049e87998ac0a9f455aa545cc895ef92 < ab09264660f9de5d05d1ef4e225aa447c63a8747
Linux / Linux
2.6.36

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/33959a491e9fd557abfa5fce5ae4637d400915d3 git.kernel.org: https://git.kernel.org/stable/c/999bd704b0b641527a5ed46f0d969deff8cfa68b git.kernel.org: https://git.kernel.org/stable/c/7eade846e013cbe8d2dc4a484463aa19e6515c7f git.kernel.org: https://git.kernel.org/stable/c/a6a941a1294ac5abe22053dc501d25aed96e48fe git.kernel.org: https://git.kernel.org/stable/c/ab09264660f9de5d05d1ef4e225aa447c63a8747