CVE-2026-90143
7.8
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Summary
In the Linux kernel, the following vulnerability has been resolved:
net: kcm: Hold RCU read lock while running BPF parser
kcm_parse_func_strparser() calls bpf_prog_run_pin_on_cpu() which prevents CPU migration, but does not establish an RCU read-side critical section. Consequently, BPF map operations can trigger WARN_ON_ONCE(!bpf_rcu_lock_held()) when called from the KCM strparser program.
Hold the RCU read lock while running the program.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 9b73896a81dc68a638a011877b7344b252f92276 < 37108861cf7bd909d4a372069bcd61c8f489e232 | affected |
| Linux | Linux | 9b73896a81dc68a638a011877b7344b252f92276 < 3c70d27e792a28bca650ddd8a9aa0fe3591ffec5 | affected |
| Linux | Linux | 9b73896a81dc68a638a011877b7344b252f92276 < 1d26a6e007d46babc7fa76e5a157dccf86cd55c0 | affected |
| Linux | Linux | 9b73896a81dc68a638a011877b7344b252f92276 < b0e94ea63dbdcbfec9beb819cd5f8fa584809ef2 | affected |
| Linux | Linux | 9b73896a81dc68a638a011877b7344b252f92276 < 21526f8a191a3c50622b8c10bd927870d780eae4 | affected |
| Linux | Linux | 9b73896a81dc68a638a011877b7344b252f92276 < 292846223eaddba890e40699d2ab82ee5671798c | affected |
| Linux | Linux | 9b73896a81dc68a638a011877b7344b252f92276 < f392affef3c9ce64dfdde794df0579e0a7793440 | affected |
| Linux | Linux | 9b73896a81dc68a638a011877b7344b252f92276 < b0346dd64e4905291cc9c479f2e6cf1884ced4e6 | affected |
| Linux | Linux | 4.9 | affected |
| Linux | Linux | 0 < 4.9 | unaffected |
| Linux | Linux | 5.10.270 <= 5.10.* | unaffected |
| Linux | Linux | 5.15.221 <= 5.15.* | unaffected |
| Linux | Linux | 6.1.188 <= 6.1.* | unaffected |
| Linux | Linux | 6.6.157 <= 6.6.* | unaffected |
| Linux | Linux | 6.12.110 <= 6.12.* | unaffected |
| Linux | Linux | 6.18.52 <= 6.18.* | unaffected |
| Linux | Linux | 7.2.6 <= 7.2.* | unaffected |
| Linux | Linux | 7.3-rc1 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/37108861cf7bd909d4a372069bcd61c8f489e232
- https://git.kernel.org/stable/c/3c70d27e792a28bca650ddd8a9aa0fe3591ffec5
- https://git.kernel.org/stable/c/1d26a6e007d46babc7fa76e5a157dccf86cd55c0
- https://git.kernel.org/stable/c/b0e94ea63dbdcbfec9beb819cd5f8fa584809ef2
- https://git.kernel.org/stable/c/21526f8a191a3c50622b8c10bd927870d780eae4
- https://git.kernel.org/stable/c/292846223eaddba890e40699d2ab82ee5671798c
- https://git.kernel.org/stable/c/f392affef3c9ce64dfdde794df0579e0a7793440
- https://git.kernel.org/stable/c/b0346dd64e4905291cc9c479f2e6cf1884ced4e6
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.