CVE-2026-98016

Unknown

Last modified

CVE-2026-98016 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix use-after-free race in sample_restore_put() Concurrent teardown of TC sample rules sharing the same restore context may re-read restore->count after dropping restore_lock. At that point another thread may already have completed cleanup and freed the restore object. Use the result of the refcount decrement while holding restore_lock to determine whether cleanup is needed..

Description

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix use-after-free race in sample_restore_put() Concurrent teardown of TC sample rules sharing the same restore context may re-read restore->count after dropping restore_lock. At that point another thread may already have completed cleanup and freed the restore object. Use the result of the refcount decrement while holding restore_lock to determine whether cleanup is needed.

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 36a3196256bf3310e5e7142b0e61787f7a201abd, < 3efd1a1938cbb33c53b0d75e55b6c0fe2ebad79a; >= 36a3196256bf3310e5e7142b0e61787f7a201abd, < 72324da8eeca269db9196c2a555abf72eb0385c5; >= 36a3196256bf3310e5e7142b0e61787f7a201abd, < 1daecd76ab9e5f055fe3970462410ad1d40bd177; >= 36a3196256bf3310e5e7142b0e61787f7a201abd, < af3aef0245abbab5e9f6302e7a7d6407187afb71
LinuxLinux5.13

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-98016?
In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix use-after-free race in sample_restore_put() Concurrent teardown of TC sample rules sharing the same restore context may re-read restore->count after dropping restore_lock. At that point another thread may already have completed cleanup and freed the restore object. Use the result of the refcount decrement while holding restore_lock to determine whether cleanup is needed.
How severe is CVE-2026-98016?
Severity scoring for CVE-2026-98016 is pending analysis.
How do I fix CVE-2026-98016?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-98016?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST