Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-83822.json
JSON Data
https://api.osv.dev/v1/vulns/AZL-83822
Upstream
Published
2026-04-24T15:16:42Z
Modified
2026-08-28T17:48:03.605762076Z
Summary
CVE-2026-31629 affecting package kernel for versions less than 6.6.137.1-1
Details

In the Linux kernel, the following vulnerability has been resolved:

nfc: llcp: add missing return after LLCP_CLOSED checks

In nfcllcprecvhdlc() and nfcllcprecvdisc(), when the socket state is LLCPCLOSED, the code correctly calls releasesock() and nfcllcpsockput() but fails to return. Execution falls through to the remainder of the function, which calls releasesock() and nfcllcpsockput() again. This results in a double releasesock() and a refcount underflow via double nfcllcpsock_put(), leading to a use-after-free.

Add the missing return statements after the LLCP_CLOSED branches in both functions to prevent the fall-through.

References

Affected packages

Azure Linux:3 / kernel

Package

Name
kernel
Purl
pkg:rpm/azure-linux/kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.6.137.1-1

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-83822.json"