CVE-2026-53157
Gravedad CVSS v3.1:
ALTA
Tipo:
CWE-416
Utilización después de liberación
Fecha de publicación:
25/06/2026
Última modificación:
07/07/2026
Descripción
*** Pendiente de traducción *** In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
net: phonet: free phonet_device after RCU grace period<br />
<br />
phonet_device_destroy() removes a phonet_device from the per-net device<br />
list with list_del_rcu(), but frees it immediately. RCU readers walking<br />
the same list can still hold a pointer to the object after it has been<br />
removed, leading to a slab-use-after-free.<br />
<br />
Use kfree_rcu(), matching the lifetime rule already used by<br />
phonet_address_del() for the same object type.
Impacto
Puntuación base 3.x
7.80
Gravedad 3.x
ALTA
Productos y versiones vulnerables
| CPE | Desde | Hasta |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 2.6.33 (incluyendo) | 5.10.260 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.11 (incluyendo) | 5.15.211 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.16 (incluyendo) | 6.1.177 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.2 (incluyendo) | 6.6.144 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.7 (incluyendo) | 6.12.95 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.13 (incluyendo) | 6.18.36 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.19 (incluyendo) | 7.0.13 (excluyendo) |
| cpe:2.3:o:linux:linux_kernel:7.1:rc1:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:7.1:rc2:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:7.1:rc3:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:7.1:rc4:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:7.1:rc5:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:7.1:rc6:*:*:*:*:*:* | ||
| cpe:2.3:o:linux:linux_kernel:7.1:rc7:*:*:*:*:*:* |
Para consultar la lista completa de nombres de CPE con productos y versiones, ver esta página
Referencias a soluciones, herramientas e información
- https://git.kernel.org/stable/c/09c9b92c2010481160245244ea8fa1d06d5d4ae0
- https://git.kernel.org/stable/c/2ec8011cce0cd0fc7a5068585d867fc08d508578
- https://git.kernel.org/stable/c/52b8f5ef82c886f7cd24617915e4b1579ddfd001
- https://git.kernel.org/stable/c/6cd7067d6e4b0b2033ba2f918ecbd54dc2af3763
- https://git.kernel.org/stable/c/71de0177b28da751f407581a4515cf4d762f6296
- https://git.kernel.org/stable/c/bd2ab4d800fc26814d89328d87b5f97ef6aa906a
- https://git.kernel.org/stable/c/bff309ea51f1395c1ef8be8b75ce62d28a319113
- https://git.kernel.org/stable/c/d59794337ea496042288c7c68356d9b9ca7f46a9



