CVE-2026-92518
Received
Received - Intake
BaseFortify
Vulnerability report for CVE-2026-92518, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.
Publication date: 2026-09-17
Last updated on: 2026-09-18
Assigner: kernel.org
Description
Description
In the Linux kernel, the following vulnerability has been resolved:
riscv, bpf: Fix kernel stack corruption in tailcall with CFI
When CONFIG_CFI_CLANG is enabled, prog->bpf_func already skips the kcfi
instruction during setup. Including it again in the tailcall jump offset
causes it to jump over an extra 4 bytes, skipping the stack pointer
adjustment, which will result in kernel stack corruption.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| Linux | Linux | 30a59cc79754fd9ff3f41b7ee2eb21da85988548 |
| Linux | Linux | 30a59cc79754fd9ff3f41b7ee2eb21da85988548 |
| Linux | Linux | 30a59cc79754fd9ff3f41b7ee2eb21da85988548 |
| Linux | Linux | fe5b68fdcec0f3d97a32f4c4acfef59cf90718f7 |
| Linux | Linux | 6.11.6 |
| Linux | Linux | 6.12 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-UNKNOWN |