CVE-2026-23412General(linux / linux_kernel)

LOWCVSS 7.8 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch linux linux_kernel systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

In the Linux kernel, the following vulnerability has been resolved: netfilter: bpf: defer hook memory release until rcu readers are done Yiming Qian reports UaF when concurrent process is dumping hooks via nfnetlink_hooks: BUG: KASAN: slab-use-after-free in nfnl_hook_dump_one.isra.0+0xe71/0x10f0 Read of size 8 at addr ffff888003edbf88 by task poc/79 Call Trace: <TASK> nfnl_hook_dump_one.isra.0+0xe71/0x10f0 netlink_dump+0x554/0x12b0 nfnl_hook_get+0x176/0x230 [..] Defer release until after concurrent readers have completed.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-416

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • linux_kernel

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 3 signals
  • General: 1 classified signal
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-04-02); latest day: 1
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
linux_kernel

2 versions affected across 1 product

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-04-02: 2Mentions · 2026-05-19: 1PoC Mentioned / Linked · 2026-05-19: 1Patch / Workaround · 2026-04-02: 1Patch / Workaround · 2026-05-19: 1Technical Details · 2026-04-02: 2Technical Details · 2026-05-19: 104-0205-19
Signal classification3 categories
General
133.3%
Patch
133.3%
Disclosure
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-04-022
General1Patch1
2026-05-191
Disclosure1
Full discourse3 posts
  • Aretiq.AI@AretiqAI
    Disclosure

    New research: CVE-2026-23412 — Linux Kernel Netfilter BPF Hook Use-After-Free LPE Affects kernels 6.4 through 7.0-rc4. Fixed in 7.0-rc5. Full analysis, KASAN crash trace, and PoC: https://aretiq.ai/research/vul260518-cve-2026-23412-linux-kernel-netfilter-bpf-hook-use-after-free-lpe/

    Post summary

    Researchers disclosed a new local privilege escalation vulnerability (CVE‑2026‑23412) in Linux Kernel Netfilter, provided a PoC and analysis, and noted it was mitigated in kernel 7.0‑rc5.

    00010157
    78 followersView on X
  • Infoflowcloud@infoflowcloud
    General

    🚨*CVE* CVE-2026-23412 In the Linux kernel, the following vulnerability has been resolved: netfilter: bpf: defer hook memory release until rcu readers are done Yiming Qian reports UaF whe… https://www.cve.org/CVERecord?id=CVE-2026-23412 ----- Traducción: CVE-2026-23412 En … http://infoflow.cloud`

    Post summary

    CVE-2026-23412 is a Linux kernel netfilter BPF memory release flaw that has been fixed, but the post lacks PoC, exploit, or patch details.

    0000032
    65 followersView on X
  • CVE@CVEnew
    Patch

    CVE-2026-23412 In the Linux kernel, the following vulnerability has been resolved: netfilter: bpf: defer hook memory release until rcu readers are done Yiming Qian reports UaF whe… https://www.cve.org/CVERecord?id=CVE-2026-23412

    Post summary

    The tweet confirms the CVE has been resolved with a patch, describing a specific kernel memory handling issue, but provides no proof of exploitation or active use.

    00000156
    56.9K followersView on X
CPE platform detail9 entries

9 of 9 entries

PartVendorProductVersionTarget SWTarget HW
OSlinuxlinux_kernel---
OSlinuxlinux_kernel6.4--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--
OSlinuxlinux_kernel7.0--

Explore more