PT-2026-61182 · Linux · Linux

CVE-2026-63865

·

Published

2026-07-19

·

Updated

2026-07-19

CVSS v3.1

8.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
In the Linux kernel, the following vulnerability has been resolved:
bpf: Drop task to inode and inet conn established from lsm sleepable hooks
bpf lsm task to inode() is called under rcu read lock() and bpf lsm inet conn established() is called from softirq context, so neither hook can be used by sleepable LSM programs.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-63865

Affected Products

Linux