CVE-2026-80619: apparmor: fix potential UAF in aa_replace_profiles
Published Aug 28, 2026
·Updated
In the Linux kernel, the following vulnerability has been resolved:
apparmor: fix potential UAF in aareplaceprofiles
The function aareplaceprofiles was accessing udata->size after calling aaputloaddata(udata), causing a potential UAF.
Fixed this by saving the size to a local variable before dropping the reference.
Event History
Aug 28, 2026
CVE Published
via MITRE·06:48 AM
Data Sourced
via MITRE·06:48 AM
Description
Frequently Asked Questions
1
What condition triggers the use-after-free?
The issue can occur when aa_replace_profiles accesses udata->size after aa_put_loaddata(udata) has dropped the reference to that load-data object.
2
What does the fix change?
The fix saves udata->size in a local variable before calling aa_put_loaddata(udata), so the function no longer reads the object after its reference is released.