CVE-2026-72024

Source
https://cve.org/CVERecord?id=CVE-2026-72024
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72024.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-72024
Downstream
Published
2026-08-15T05:51:49Z
Modified
2026-08-18T03:56:18Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
mac802154: remove interfaces with RCU list deletion
Details

In the Linux kernel, the following vulnerability has been resolved:

mac802154: remove interfaces with RCU list deletion

Queue wake, stop, and disable paths walk local->interfaces under RCU. The bulk hardware teardown path removes entries with list_del(), so an asynchronous transmit completion can follow a poisoned list node in ieee802154_wake_queue().

Use list_del_rcu() as in the single-interface removal path. The following unregister_netdevice() waits for in-flight RCU readers before freeing the netdevice, so no separate grace-period wait is needed.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72024.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
592dfbfc72f5352437c883aa11ab579d10cdb595
Fixed
72ac5af9ad09662bd0ea91cb8845d490c8ef9c01
Fixed
2039f27b1a0c997137a5de7f8a3cee0e80fbf952
Fixed
4bf231f459b542414629b64f63d5cad6701bd07c
Fixed
b91e5248dd7af09b500879a46d22a36b60db3a57
Fixed
c7c031b75218b3ba3014a0f6b9849888994528d6
Fixed
77caf2d6eba7cb94a7ecd7b369a5974fd7d7c054
Fixed
d8b5b66388a51febe4b8505b0ecd9da15b4ba639
Fixed
539dfcf69105d8d3d4d677b71de6e5ede2e6dfa0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72024.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.19.0
Fixed
5.10.261
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.212
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.178
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.145
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.97
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72024.json"