AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2026-23271

HIGH · CVSS 7.8 EPSS 0.10%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-03-20 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.8. It affects Linux.

CVE
CVE-2026-23271
Severity
HIGH
CVSS
7.8
EPSS
0.10%
Linux

Original NVD Description

In the Linux kernel, the following vulnerability has been resolved: perf: Fix __perf_event_overflow() vs perf_remove_from_context() race Make sure that __perf_event_overflow() runs with IRQs disabled for all possible callchains. Specifically the software events can end up running it with only preemption disabled. This opens up a race vs perf_event_exit_event() and friends that will go and free various things the overflow path expects to be present, like the BPF program.

Related CVEs

Other vulnerabilities affecting the same vendor(s)