PT-2026-4659 · Linux+2 · Linux Kernel+2

Published

2026-01-01

·

Updated

2026-06-16

·

CVE-2026-22997

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel related to CAN (Controller Area Network) functionality within the J1939 protocol. Specifically, the issue involves a reference count leak within the j1939 session deactivate activate next() function when a timer is cancelled. This can lead to errors during network device unregistration, indicated by messages such as 'unregister netdevice: waiting for vcan0 to become free. Usage count = 2.' The problem occurs because j1939 session deactivate activate next() is not always called when the timer is disabled, resulting in a leaked reference count for J1939 sessions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-78479
BDU:2026-01109
CVE-2026-22997
ECHO-174A-ECE3-58C1
OPENSUSE-SU-2026:20287-1
SUSE-SU-2026:0447-1
SUSE-SU-2026:0472-1
SUSE-SU-2026:0587-1
SUSE-SU-2026:20477-1
SUSE-SU-2026:20498-1
SUSE-SU-2026:20555-1
SUSE-SU-2026:20599-1
SUSE-SU-2026:20615-1
SUSE-SU-2026:20845-1
SUSE-SU-2026:20876-1
USN-8162-1
USN-8180-1
USN-8180-2
USN-8180-3
USN-8180-4
USN-8180-5
USN-8180-6
USN-8186-1
USN-8187-1
USN-8188-1
USN-8243-1
USN-8275-1
USN-8278-1
USN-8278-2
USN-8289-1
USN-8289-2
USN-8296-1
USN-8296-2
USN-8297-1
USN-8393-1
USN-8440-1

Affected Products

Linuxmint
Linux Kernel
Ubuntu