๐Ÿ” CVE Alert

CVE-2026-74512

HIGH 7.8

audit: fix potential use-after-free in audit_del_rule()

CVSS Score
7.8
EPSS Score
0.1%
EPSS Percentile
3th

In the Linux kernel, the following vulnerability has been resolved: audit: fix potential use-after-free in audit_del_rule() `audit_del_rule()` destroys `e->rule.exe` via `audit_remove_mark_rule()` before unlinking the rule from RCU-visible filter lists and waiting for a grace period. Concurrent readers in `audit_filter()` and `audit_filter_rules()` still dereference `e->rule.exe`, while the fsnotify mark can be freed on an independent lifetime path. This creates a use-after-free window during rule deletion. Fix this by unlinking the rule from the RCU-visible lists and invoking `synchronize_rcu()` before calling `audit_remove_mark_rule()` (and other rule removal helpers). This ensures that all existing RCU readers have exited the critical section before any underlying resources are destroyed.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 15, 2026
Last Updated Aug 19, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new high vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

Linux / Linux
34d99af52ad40bd498ba66970579a5bc1fb1a3bc < 93616c567469510b7bba55b2674e0c4523fd7e64 34d99af52ad40bd498ba66970579a5bc1fb1a3bc < 3f82927b399d7a276c0c12b6ff4424b747a0c9a7 34d99af52ad40bd498ba66970579a5bc1fb1a3bc < 8ae135a8962be9d4e8a131eb18eb06cdf02a47ce 34d99af52ad40bd498ba66970579a5bc1fb1a3bc < 45bf3df5b32e5a49953e7ceabc55f7dd85380e46 34d99af52ad40bd498ba66970579a5bc1fb1a3bc < 78bde7e9bd36eaae1b8e8cfcd47f12a34f301dbf 34d99af52ad40bd498ba66970579a5bc1fb1a3bc < cae0dfed5d307b240bff71c3cf206652d1b6f215 34d99af52ad40bd498ba66970579a5bc1fb1a3bc < 5b8f46864f06d6dbacb7dcea52bc084dfd122638 34d99af52ad40bd498ba66970579a5bc1fb1a3bc < 246df90b5f1a8a6e6abbd2f058b029558720adec
Linux / Linux
4.3

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/93616c567469510b7bba55b2674e0c4523fd7e64 git.kernel.org: https://git.kernel.org/stable/c/3f82927b399d7a276c0c12b6ff4424b747a0c9a7 git.kernel.org: https://git.kernel.org/stable/c/8ae135a8962be9d4e8a131eb18eb06cdf02a47ce git.kernel.org: https://git.kernel.org/stable/c/45bf3df5b32e5a49953e7ceabc55f7dd85380e46 git.kernel.org: https://git.kernel.org/stable/c/78bde7e9bd36eaae1b8e8cfcd47f12a34f301dbf git.kernel.org: https://git.kernel.org/stable/c/cae0dfed5d307b240bff71c3cf206652d1b6f215 git.kernel.org: https://git.kernel.org/stable/c/5b8f46864f06d6dbacb7dcea52bc084dfd122638 git.kernel.org: https://git.kernel.org/stable/c/246df90b5f1a8a6e6abbd2f058b029558720adec