CVE-2026-90393 | Linux Kernel up to 7.2.5 BPF bpf_netns_link_update_prog old_prog/new_prog race condition

SecurityVulns

A vulnerability described as very critical has been identified in Linux Kernel up to 7.2.5. Impacted is the function bpf_netns_link_update_prog of the component BPF. The manipulation of the argument old_prog/new_prog results in race condition.

This vulnerability is known as CVE-2026-90393. It is possible to launch the attack remotely. No exploit is available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More