CVE-2026-80676

Source
https://cve.org/CVERecord?id=CVE-2026-80676
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80676.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-80676
Downstream
Published
2026-08-28T06:49:14.747Z
Modified
2026-08-30T03:48:20.937768741Z
Summary
Drivers: hv: vmbus: use generic driver_override infrastructure
Details

In the Linux kernel, the following vulnerability has been resolved:

Drivers: hv: vmbus: use generic driver_override infrastructure

When a driver is probed through __driverattach(), the bus' match() callback is called without the device lock held, thus accessing the driveroverride field without a lock, which can cause a UAF.

Fix this by using the driver-core driver_override infrastructure taking care of proper locking internally.

Note that calling match() from _driverattach() without the device lock held is intentional. [1]

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80676.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d765edbb301c0e196015a59b17420558088ea33f
Fixed
d1cb12ae81d2f7a58b0b1cfb51862afca98e6058
Fixed
0e2f0833556c8c5269deb457b89d538644a3b747
Fixed
2fb010ea7ca98cd09a6d365260b769f627e73a76
Fixed
331d8900121a1d74ecd45cd2db742ddcb5a0a565

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80676.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
6.12.97
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80676.json"