CVE-2026-53260: tcp: Add preempt_{disable,enable}_nested() in reqsk_queue_hash_req().
In the Linux kernel, the following vulnerability has been resolved:
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 6.1.176-1Fixed in 6.1.187-1Fixed in 6.12.107-1Fixed in 7.1.13-1 - Upgrade
Upgrade
debian/linux-6.12to a version that resolves this vulnerability.Fixed in 6.12.101-1~deb12u1 - Configuration
In reqsk_queue_hash_req(), wrap the calls so the code path is protected as described: mod_timer() and refcount_set() are bracketed with preempt_disable_nested() / preempt_enable_nested(). Note inet_ehash_insert() holds the normal spin_lock() (mutex in PREEMPT_RT), so it must be called outside preempt_disable_nested().
TCP (reqsk_queue_hash_req / reqsk_timer_handler) preempt_disable_nested()/preempt_enable_nested wrapping = Use preempt_disable_nested() and preempt_enable_nested() to wrap mod_timer() and refcount_set() in reqsk_queue_hash_req() (so the section is not preempted between mod_timer() and refcount_set()).
Event History
Frequently Asked Questions
What is the severity of CVE-2026-53260?
The severity of CVE-2026-53260 is rated at risk level 37.
How do I fix CVE-2026-53260?
To fix CVE-2026-53260, update the Linux kernel to the latest patched version that addresses this vulnerability.
What systems are affected by CVE-2026-53260?
CVE-2026-53260 affects the Linux kernel, specifically the components related to TCP connection handling.
What type of vulnerability is CVE-2026-53260?
CVE-2026-53260 is classified as a Use After Free vulnerability.
When was CVE-2026-53260 published?
CVE-2026-53260 was published on June 25, 2026.