CVE-2026-23271

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/03/2026
Last modified:
02/04/2026

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> perf: Fix __perf_event_overflow() vs perf_remove_from_context() race<br /> <br /> Make sure that __perf_event_overflow() runs with IRQs disabled for all<br /> possible callchains. Specifically the software events can end up running<br /> it with only preemption disabled.<br /> <br /> This opens up a race vs perf_event_exit_event() and friends that will go<br /> and free various things the overflow path expects to be present, like<br /> the BPF program.