CVE-2026-64370
Last modified
CVE-2026-64370 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: Fix pid refcount leak in do_cpu_nanosleep() error path In do_cpu_nanosleep(), posix_cpu_timer_create() takes a pid reference via get_pid() and stores it in timer.it.cpu.pid. If the subsequent posix_cpu_timer_set() call fails, the function returns immediately without calling posix_cpu_timer_del() to release the pid reference, causing a leak. Fix it by calling posix_cpu_timer_del() before the unlock-and-return on the error path, consistent with the other exit paths in the same function.. EPSS estimates a 0.18% chance of exploitation in the next 30 days.
Description
In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: Fix pid refcount leak in do_cpu_nanosleep() error path In do_cpu_nanosleep(), posix_cpu_timer_create() takes a pid reference via get_pid() and stores it in timer.it.cpu.pid. If the subsequent posix_cpu_timer_set() call fails, the function returns immediately without calling posix_cpu_timer_del() to release the pid reference, causing a leak. Fix it by calling posix_cpu_timer_del() before the unlock-and-return on the error path, consistent with the other exit paths in the same function.
Metrics
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < afed3cdc1cca133f804fcf57ff228974f424b23a; >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < 8a270b1258797f61b61da44f8bfd41a581b5c85b; >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < d605d00085adc3fddf67de01dc2a44aebf1a3fb5; >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < e5ffc638faf5dc7d9dc85c9a95e10bf97442e0c0; >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < eb4cec29a78334d09bcfb41c0660cdd62ba05843; >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < 7776f9226e99eb49d97492b0b445027cfcb189da; >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < 8f06363446c5d043c9a7c008b250040e9de98cf9; >= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2, < 87bd2ad568e15b90d5f7d4bcd70342d05dad649c |
| Linux | Linux | 2.6.12 |
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Frequently Asked Questions
What is CVE-2026-64370?
How severe is CVE-2026-64370?
How do I fix CVE-2026-64370?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-64365In the Linux kernel, the following vulnerability has been re…
- CVE-2026-64366In the Linux kernel, the following vulnerability has been re…8.8
- CVE-2026-64367In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2026-64368In the Linux kernel, the following vulnerability has been re…8.1
- CVE-2026-64369In the Linux kernel, the following vulnerability has been re…
- CVE-2026-6437Improper neutralization of argument delimiters in the volume…6.9
- CVE-2026-64371In the Linux kernel, the following vulnerability has been re…
- CVE-2026-64372In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2026-64373In the Linux kernel, the following vulnerability has been re…
- CVE-2026-64374In the Linux kernel, the following vulnerability has been re…7.5
- CVE-2026-64375In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2026-64376In the Linux kernel, the following vulnerability has been re…
Are you affected by CVE-2026-64370?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
