๐Ÿ” CVE Alert

CVE-2026-90392

UNKNOWN 0.0

bpf: Fix potential UAF when reading bpf link info

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix potential UAF when reading bpf link info In bpf_link_show_fdinfo and bpf_link_get_info_by_fd, link->prog is accessed without holding any locks. If the prog is concurrently replaced via bpf_link_update, the old prog can be freed, leading to a potential UAF issue. Fix this by accessing link->prog under RCU protection to safely fetch the pointer and guarantee its lifetime while reading its fields.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 17, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
0c991ebc8c69d29b7fc44db17075c5aa5253e2ab < a5c936ac904767fc1d943d40b0308bcb2ae2509b 0c991ebc8c69d29b7fc44db17075c5aa5253e2ab < d7d7208e2603b45724b684f4df73904fb347741e 0c991ebc8c69d29b7fc44db17075c5aa5253e2ab < 85cf991c881e7198be32be05a9daa2625390c8b3 0c991ebc8c69d29b7fc44db17075c5aa5253e2ab < 79347e42cfbc9e78872922e8f08a70609c9af82f 0c991ebc8c69d29b7fc44db17075c5aa5253e2ab < 863f3ddd0b8ac65abfb50d3be0869268ac0e277b
Linux / Linux
5.7

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/a5c936ac904767fc1d943d40b0308bcb2ae2509b git.kernel.org: https://git.kernel.org/stable/c/d7d7208e2603b45724b684f4df73904fb347741e git.kernel.org: https://git.kernel.org/stable/c/85cf991c881e7198be32be05a9daa2625390c8b3 git.kernel.org: https://git.kernel.org/stable/c/79347e42cfbc9e78872922e8f08a70609c9af82f git.kernel.org: https://git.kernel.org/stable/c/863f3ddd0b8ac65abfb50d3be0869268ac0e277b