CVE-2026-23245

In the Linux kernel, the following vulnerability has been resolved: net/sched: act_gate: snapshot parameters with RCU on replace The gate action can be replaced while the hrtimer callback or dump path is walking the schedule list. Convert the parameters to an RCU-protected snapshot and swap updates under tcf_lock, freeing the previous snapshot via call_rcu(). When REPLACE omits the entry list, preserve the existing schedule so the effective state is unchanged.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:5.8:-:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc2:*:*:*:*:*:*

History

21 May 2026, 18:47

Type Values Removed Values Added
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:5.8:-:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.0:rc2:*:*:*:*:*:*
References () https://git.kernel.org/stable/c/035d0d09d5ab3ed3e93d18cde2b562a6719eea23 - () https://git.kernel.org/stable/c/035d0d09d5ab3ed3e93d18cde2b562a6719eea23 - Patch
References () https://git.kernel.org/stable/c/04d75529dc0f9be78786162ebab7424af4644df2 - () https://git.kernel.org/stable/c/04d75529dc0f9be78786162ebab7424af4644df2 - Patch
References () https://git.kernel.org/stable/c/58b162e318d0243ad2d7d92456c0873f2494c351 - () https://git.kernel.org/stable/c/58b162e318d0243ad2d7d92456c0873f2494c351 - Patch
References () https://git.kernel.org/stable/c/62413a9c3cb183afb9bb6e94dd68caf4e4145f4c - () https://git.kernel.org/stable/c/62413a9c3cb183afb9bb6e94dd68caf4e4145f4c - Patch
References () https://git.kernel.org/stable/c/8b1251bbf0f10ac745ed74bad4d3b433caa1eeae - () https://git.kernel.org/stable/c/8b1251bbf0f10ac745ed74bad4d3b433caa1eeae - Patch
References () https://git.kernel.org/stable/c/dfc314d7c767e350f78a46a8f8b134f80e8ad432 - () https://git.kernel.org/stable/c/dfc314d7c767e350f78a46a8f8b134f80e8ad432 - Patch
References () https://git.kernel.org/stable/c/fc98fd8d214693be91253d9a88cdf8e5e143d124 - () https://git.kernel.org/stable/c/fc98fd8d214693be91253d9a88cdf8e5e143d124 - Patch
CWE NVD-CWE-noinfo
First Time Linux linux Kernel
Linux

18 Apr 2026, 09:16

Type Values Removed Values Added
References
  • () https://git.kernel.org/stable/c/fc98fd8d214693be91253d9a88cdf8e5e143d124 -

02 Apr 2026, 15:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

25 Mar 2026, 11:16

Type Values Removed Values Added
Summary
  • (es) En el kernel de Linux, la siguiente vulnerabilidad ha sido resuelta: net/sched: act_gate: instantánea de parámetros con RCU al reemplazar La acción de puerta puede ser reemplazada mientras la devolución de llamada de hrtimer o la ruta de volcado está recorriendo la lista de programación. Convertir los parámetros a una instantánea protegida por RCU e intercambiar actualizaciones bajo tcf_lock, liberando la instantánea anterior mediante call_rcu(). Cuando REPLACE omite la lista de entradas, preservar la programación existente para que el estado efectivo permanezca inalterado.
References
  • () https://git.kernel.org/stable/c/035d0d09d5ab3ed3e93d18cde2b562a6719eea23 -
  • () https://git.kernel.org/stable/c/8b1251bbf0f10ac745ed74bad4d3b433caa1eeae -
  • () https://git.kernel.org/stable/c/dfc314d7c767e350f78a46a8f8b134f80e8ad432 -

18 Mar 2026, 11:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-18 11:16

Updated : 2026-05-21 18:47


NVD link : CVE-2026-23245

Mitre link : CVE-2026-23245

CVE.ORG link : CVE-2026-23245


JSON object : View

Products Affected

linux

  • linux_kernel