CVE-2026-98014 | Linux Kernel up to 6.12.110/6.18.52/7.2.6/7.3-rc2 E-Switch net/mlx5 mlx5_esw_vport_disable allmulti_rule/mc_list use after free

SecurityVulns

A vulnerability identified as critical has been detected in Linux Kernel up to 6.12.110/6.18.52/7.2.6/7.3-rc2. This issue affects the function mlx5_esw_vport_disable of the file net/mlx5 of the component E-Switch. This manipulation of the argument allmulti_rule/mc_list causes use after free.

This vulnerability appears as CVE-2026-98014. The attack requires local access. There is no available exploit.

You should upgrade the affected component.VulDB Recent EntriesRead More