PT-2026-39096 · Linux · Linux Kernel

Published

2026-05-08

·

Updated

2026-05-15

·

CVE-2026-43435

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the rust binder component where oneway spam detection was flawed. In TreeRange, the spam detection logic executed before the current request was inserted into the tree, meaning new requests were not included in the spam calculation. Additionally, ArrayRange completely lacked detection logic, allowing large spamming transactions to go undetected. This was addressed by moving the logic in TreeRange to occur after range insertion and implementing the low oneway space() function in ArrayRange.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2026-43435

Affected Products

Linux Kernel