CVE-2026-23245
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
18/03/2026
Last modified:
25/03/2026
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
net/sched: act_gate: snapshot parameters with RCU on replace<br />
<br />
The gate action can be replaced while the hrtimer callback or dump path is<br />
walking the schedule list.<br />
<br />
Convert the parameters to an RCU-protected snapshot and swap updates under<br />
tcf_lock, freeing the previous snapshot via call_rcu(). When REPLACE omits<br />
the entry list, preserve the existing schedule so the effective state is<br />
unchanged.
Impact
References to Advisories, Solutions, and Tools
- https://git.kernel.org/stable/c/035d0d09d5ab3ed3e93d18cde2b562a6719eea23
- https://git.kernel.org/stable/c/04d75529dc0f9be78786162ebab7424af4644df2
- https://git.kernel.org/stable/c/58b162e318d0243ad2d7d92456c0873f2494c351
- https://git.kernel.org/stable/c/62413a9c3cb183afb9bb6e94dd68caf4e4145f4c
- https://git.kernel.org/stable/c/8b1251bbf0f10ac745ed74bad4d3b433caa1eeae
- https://git.kernel.org/stable/c/dfc314d7c767e350f78a46a8f8b134f80e8ad432



