CVE-2026-43417

medium Red Hat
EPSS Score
0.0%
Exploitation probability in 30 days
Top 95% most likely to be exploited
Published: May 8, 2026 (6 days ago)
Last Modified: May 8, 2026
Vendor: Red Hat
Source: REDHAT

Description

A flaw was found in the Linux kernel. The logic for handling tasks created using `vfork()` (a system call that creates a new process) contains an error. This can cause a task to enter an endless loop when attempting to acquire a Context ID (CID) during scheduling. A local user could exploit this vulnerability, leading to a system stall and a Denial of Service (DoS) for the affected machine.

CWE

CWE-1095

Affected Products

Red Hat Enterprise Linux 10Red Hat Enterprise Linux 6Red Hat Enterprise Linux 7Red Hat Enterprise Linux 8Red Hat Enterprise Linux 9

References