← Back to CVE List
CVE-2026-90143NVD
Vulnerability Summary
In the Linux kernel, the following vulnerability has been resolved:
net: kcm: Hold RCU read lock while running BPF parser
kcm_parse_func_strparser() calls bpf_prog_run_pin_on_cpu() which
prevents CPU migration, but does not establish an RCU read-side
critical section. Consequently, BPF map operations can trigger
WARN_ON_ONCE(!bpf_rcu_lock_held()) when called from the KCM strparser
program.
Hold the RCU read lock while running the program.
net: kcm: Hold RCU read lock while running BPF parser
kcm_parse_func_strparser() calls bpf_prog_run_pin_on_cpu() which
prevents CPU migration, but does not establish an RCU read-side
critical section. Consequently, BPF map operations can trigger
WARN_ON_ONCE(!bpf_rcu_lock_held()) when called from the KCM strparser
program.
Hold the RCU read lock while running the program.
CVSS v3.1 Base Metrics — Score 7.8 (HIGH)
Attack VectorLocal
Attack ComplexityLow
Privileges RequiredLow
User InteractionNone
ScopeUnchanged
ConfidentialityHigh
IntegrityHigh
AvailabilityHigh
Affected & Patched Versions
- Linux Linux >= 9b73896a81dc68a638a011877b7344b252f92276 and < 37108861cf7bd909d4a372069bcd61c8f489e232
- Linux Linux >= 9b73896a81dc68a638a011877b7344b252f92276 and < 3c70d27e792a28bca650ddd8a9aa0fe3591ffec5
- Linux Linux >= 9b73896a81dc68a638a011877b7344b252f92276 and < 1d26a6e007d46babc7fa76e5a157dccf86cd55c0
- Linux Linux >= 9b73896a81dc68a638a011877b7344b252f92276 and < b0e94ea63dbdcbfec9beb819cd5f8fa584809ef2
- Linux Linux >= 9b73896a81dc68a638a011877b7344b252f92276 and < 21526f8a191a3c50622b8c10bd927870d780eae4
- Linux Linux >= 9b73896a81dc68a638a011877b7344b252f92276 and < 292846223eaddba890e40699d2ab82ee5671798c
- Linux Linux >= 9b73896a81dc68a638a011877b7344b252f92276 and < f392affef3c9ce64dfdde794df0579e0a7793440
- Linux Linux >= 9b73896a81dc68a638a011877b7344b252f92276 and < b0346dd64e4905291cc9c479f2e6cf1884ced4e6
- Linux Linux >= 4.9
- Linux Linux 37108861cf7bd909d4a372069bcd61c8f489e232
- Linux Linux 3c70d27e792a28bca650ddd8a9aa0fe3591ffec5
- Linux Linux 1d26a6e007d46babc7fa76e5a157dccf86cd55c0
- Linux Linux b0e94ea63dbdcbfec9beb819cd5f8fa584809ef2
- Linux Linux 21526f8a191a3c50622b8c10bd927870d780eae4
- Linux Linux 292846223eaddba890e40699d2ab82ee5671798c
- Linux Linux f392affef3c9ce64dfdde794df0579e0a7793440
- Linux Linux b0346dd64e4905291cc9c479f2e6cf1884ced4e6
External References
- https://git.kernel.org/stable/c/37108861cf7bd909d4a372069bcd61c8f489e232
- https://git.kernel.org/stable/c/3c70d27e792a28bca650ddd8a9aa0fe3591ffec5
- https://git.kernel.org/stable/c/1d26a6e007d46babc7fa76e5a157dccf86cd55c0
- https://git.kernel.org/stable/c/b0e94ea63dbdcbfec9beb819cd5f8fa584809ef2
- https://git.kernel.org/stable/c/21526f8a191a3c50622b8c10bd927870d780eae4
- https://git.kernel.org/stable/c/292846223eaddba890e40699d2ab82ee5671798c
- https://git.kernel.org/stable/c/f392affef3c9ce64dfdde794df0579e0a7793440
- https://git.kernel.org/stable/c/b0346dd64e4905291cc9c479f2e6cf1884ced4e6