Junglewise Threat Intelligence

CVE-2026-52946: Linux Kernel deadlock in fasync signaling via SOFTIRQ

CVE-2026-52946 · Severity: info · CVSS 7.5 · Published 2026-06-24

Technologies: Linux Kernel. Vendors: Linux.

Executive brief

A vulnerability in the Linux kernel's file control (fcntl) mechanism could allow a remote attacker to cause a system crash or freeze. The issue occurs when the system handles specific types of network traffic (TCP Urgent packets) or input events, leading to a 'deadlock' where the system becomes unresponsive. This primarily impacts system availability and could be used to perform a denial-of-service attack.

Technical details

A SOFTIRQ-safe to SOFTIRQ-unsafe lock order deadlock exists in fs/fcntl.c within the send_sigio() and send_sigurg() functions. When FASYNC is configured for a process group, these functions acquire read_lock(&tasklist_lock) to traverse tasks. Because these functions can be invoked from softirq context (e.g., via NET_RX_SOFTIRQ during TCP URG packet processing), a deadlock occurs if a writer is already spinning on the tasklist_lock in process context. An attacker can potentially trigger this remotely via TCP URG packets to cause a Denial of Service (DoS). The fix replaces the tasklist_lock with rcu_read_lock() for task list traversal, which is safe for softirq contexts.

Affected products

  • Linux Linux Kernel All versions prior to the June 2026 patches

Timeline

  • 2026-05-23: disclosed: Initial patch submission by Mingyu Wang
  • 2026-06-19: patched: Patch committed to stable tree by Greg Kroah-Hartman
  • 2026-06-24: advisory: CVE-2026-52946 published

References

Related threats