CVE-2026-98281

Source
https://cve.org/CVERecord?id=CVE-2026-98281
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98281.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-98281
Downstream
Published
2026-10-06T08:45:40Z
Modified
2026-10-08T02:52:56Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
futex: Also allocate private hash on vfork()
Details

In the Linux kernel, the following vulnerability has been resolved:

futex: Also allocate private hash on vfork()

As Jann demonstrated, it is entirely feasible to access the mm through vfork(). Therefore we need to allocate a private hash on vfork() as well as any other CLONE_VM user.

Specifically, it must be avoided to have (private) futex waiters before allocating the private hash.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/98xxx/CVE-2026-98281.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
1dcd36420af2da5bd59306dba9caf78e3d248b1d
Fixed
5468a4855b63b30156a79e5248e01bf1a2c18dd7
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
ee9dce44362b2d8132c32964656ab6dff7dfbc6a
Fixed
eecbafa8cabbc4d1482f6a5e2acc25a8f934681b
Fixed
b61b6f95d6722ddbbbd09e689fa41b55fd36f9a5
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
6.18.33
Fixed
6.18.54
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
7.0.10
Fixed
7.1
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
974ac49a9a068b0591a59f65c63eb06579a13091

Affected versions

v6.*
v6.18.33
v6.18.34
v6.18.35
v6.18.36
v6.18.37
v6.18.38
v6.18.39
v6.18.40
v6.18.41
v6.18.42
v6.18.43
v6.18.44
v6.18.45
v6.18.46
v6.18.47
v6.18.48
v6.18.49
v6.18.50
v6.18.51
v6.18.52
v6.18.53
v7.*
v7.0.10
v7.0.11
v7.0.12
v7.0.13
v7.0.14
v7.1
v7.1-rc2
v7.1-rc3
v7.1-rc4
v7.1-rc5
v7.1-rc6
v7.1-rc7
v7.2
v7.2-rc1
v7.2-rc2
v7.2-rc3
v7.2-rc4
v7.2-rc5
v7.2-rc6
v7.2-rc7
v7.2.1
v7.2.2
v7.2.3
v7.2.4
v7.2.5
v7.2.6
v7.2.7
v7.3-rc1
v7.3-rc2
v7.3-rc3

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98281.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
6.18.54
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.8

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98281.json"