CVE-2026-23212: bonding: annotate data-races around slave->last_rx
Published Feb 18, 2026
·Updated
bonding: annotate data-races around slave->lastrx
Affected Software
13 affected componentsFixes available
linux_kernel
Microsoft azl3 kernel 6.6.121.1-1
Linux Linux kernel>=2.6.19<6.1.162
Linux Linux kernel>=6.2<6.6.123
Linux Linux kernel>=6.7<6.12.69
Linux Linux kernel>=6.13<6.18.9
Linux Linux kernel=6.19-rc1
Linux Linux kernel=6.19-rc2
Linux Linux kernel=6.19-rc3
Linux Linux kernel=6.19-rc4
Linux Linux kernel=6.19-rc5
Linux Linux kernel=6.19-rc6
Linux Linux kernel=6.19-rc7
Remediation
Event History
Feb 18, 2026
CVE Published
via MITRE·02:16 PM
Data Sourced
via MITRE·02:16 PM
Description
Data Sourced
via NVD·03:18 PM
RemedyDescriptionSeverityWeaknessAffected Software
Feb 21, 2026
Data Sourced
via Microsoft·12:26 PM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·12:26 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2026-23212?
CVE-2026-23212 has a moderate severity rating as it involves data races in the Linux kernel's bonding driver.
2
How do I fix CVE-2026-23212?
To fix CVE-2026-23212, ensure you update your Linux kernel to the latest stable version that addresses this vulnerability.
3
What types of systems are affected by CVE-2026-23212?
CVE-2026-23212 affects systems running the Linux kernel with bonding configuration.
4
What is the impact of CVE-2026-23212?
The impact of CVE-2026-23212 may lead to unpredictable behavior due to data races affecting the last received ARP packet.
5
Are there any workarounds for CVE-2026-23212?
Currently, no specific workarounds are recommended for CVE-2026-23212 other than applying the kernel updates.