CVE-2026-23014Expired Pointer Dereference in Linux

Severity
5.5MEDIUMNVD
EPSS
0.0%
top 94.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 28

Description

In the Linux kernel, the following vulnerability has been resolved: perf: Ensure swevent hrtimer is properly destroyed With the change to hrtimer_try_to_cancel() in perf_swevent_cancel_hrtimer() it appears possible for the hrtimer to still be active by the time the event gets freed. Make sure the event does a full hrtimer_cancel() on the free path by installing a perf_event::destroy handler.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages5 packages

Linuxlinux/linux_kernel6.18.06.18.6
NVDlinux/linux_kernel6.17.86.18+3
Debianlinux/linux_kernel< 6.18.8-1
CVEListV5linux/linuxeb3182ef0405ff2f6668fd3e5ff9883f60ce8801deee9dfb111ab00f9dfd46c0c7e36656b80f5235+3
debiandebian/linux< linux 6.18.8-1 (forky)

Patches

🔴Vulnerability Details

3
GHSA
GHSA-cm38-gcmc-3rxp: In the Linux kernel, the following vulnerability has been resolved: perf: Ensure swevent hrtimer is properly destroyed With the change to hrtimer_tr2026-01-28
OSV
perf: Ensure swevent hrtimer is properly destroyed2026-01-28
OSV
CVE-2026-23014: In the Linux kernel, the following vulnerability has been resolved: perf: Ensure swevent hrtimer is properly destroyed With the change to hrtimer_try_2026-01-28

📋Vendor Advisories

2
Red Hat
kernel: perf: Ensure swevent hrtimer is properly destroyed2026-01-28
Debian
CVE-2026-23014: linux - In the Linux kernel, the following vulnerability has been resolved: perf: Ensur...2026

🕵️Threat Intelligence

1
Wiz
CVE-2026-23014 Impact, Exploitability, and Mitigation Steps | Wiz
CVE-2026-23014 — Expired Pointer Dereference in Linux | cvebase