๐Ÿ” CVE Alert

CVE-2026-72383

UNKNOWN 0.0

sctp: fix addr_wq_timer race in sctp_free_addr_wq()

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: sctp: fix addr_wq_timer race in sctp_free_addr_wq() sctp_free_addr_wq() previously removed addr_wq_timer using timer_delete() while holding addr_wq_lock. However, timer_delete() does not guarantee that a currently running timer handler has completed. This allows a race with sctp_addr_wq_timeout_handler(), where the handler may still run after addr_waitq has been freed, acquire addr_wq_lock, and access freed memory, leading to a use-after-free. Fix this by calling timer_shutdown_sync() before taking addr_wq_lock. This guarantees that any in-flight timer handler has finished and prevents the timer from being re-armed during teardown, making subsequent cleanup safe.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 15, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
4db67e808640e3934d82ce61ee8e2e89fd877ba8 < a8323fb2ab6cd6978f359daeed6688e0cadf32ba 4db67e808640e3934d82ce61ee8e2e89fd877ba8 < c3e5cac47519d77ad36b9c03a1df1536aaa0c4a1 4db67e808640e3934d82ce61ee8e2e89fd877ba8 < 976c19de0f22a857ba0112f39635f8fd7a257568
Linux / Linux
3.7

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/a8323fb2ab6cd6978f359daeed6688e0cadf32ba git.kernel.org: https://git.kernel.org/stable/c/c3e5cac47519d77ad36b9c03a1df1536aaa0c4a1 git.kernel.org: https://git.kernel.org/stable/c/976c19de0f22a857ba0112f39635f8fd7a257568