CVE-2026-23400

Description

A flaw was found in the Linux kernel's rust_binder component. A local user could potentially trigger a deadlock condition. This occurs when the set_notification_done() function is called while the proc lock is already held and the current thread is not a 'looper' (a thread designed to handle specific kernel messages). This can lead to a system freeze, causing a Denial of Service (DoS).

Understanding the Weakness (CWE)

Availability

Technical Impact: DoS: Resource Consumption (CPU); DoS: Resource Consumption (Other); DoS: Crash, Exit, or Restart

Each thread of execution will "hang" and prevent tasks from completing. In some cases, CPU consumption may occur if a lock check occurs in a tight loop.

Frequently Asked Questions

Want to get errata notifications? Sign up here.