CVE-2026-80885

Summary

In the Linux kernel, the following vulnerability has been resolved:

afs: Fix uncancelled rxrpc OOB message handler

Fix AFS to cancel its OOB message processing (typically to respond to security challenges). Also move OOB message processing to afs_wq so that it's also waited for and make the OOB handler just return if the net namespace is no longer live.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux5800b1cf3fd8ccab752a101865be1e76dac33142 < 231414253b648b3518b56f09710b831945d6a2fcaffected
LinuxLinux5800b1cf3fd8ccab752a101865be1e76dac33142 < d14e96ddd616c8a9fff3b5bab3bf4af0cfc30ec4affected
LinuxLinux5800b1cf3fd8ccab752a101865be1e76dac33142 < a4057e58b07005d0fe0491bdbf1868c1491909eeaffected
LinuxLinux6.16affected
LinuxLinux0 < 6.16unaffected
LinuxLinux6.18.40 <= 6.18.*unaffected
LinuxLinux7.1.5 <= 7.1.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References