CVE-2026-23404
In the Linux kernel, the following vulnerability has been resolved: apparmor: replace recursive profile removal with iterative approach The profile removal code uses recursion when removing nested profiles, which can lead to kernel stack exhaustion and…
Does this matter?
Lower severity and a low EPSS score (0.18%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: apparmor: replace recursive profile removal with iterative approach The profile removal code uses recursion when removing nested profiles, which can lead to kernel stack exhaustion and system crashes. Reproducer: $ pf='a'; for ((i=0; i<1024; i++)); do echo -e "profile $pf { \n }" | apparmor_parser -K -a; pf="$pf//x"; done $ echo -n a > /sys/kernel/security/apparmor/.remove Replace the recursive __aa_profile_list_release() approach with an iterative approach in __remove_profile(). The function repeatedly finds and removes leaf profiles until the entire subtree is removed, maintaining the same removal semantic without recursion.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.18% probability · 7th percentile
- CISA KEV
- Not listed
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/33959a491e9fd557abfa5fce5ae4637d400915d3Patch
- https://git.kernel.org/stable/c/4fdc847b107321dec22bf8ecd6019b7af76d7886Patch
- https://git.kernel.org/stable/c/7eade846e013cbe8d2dc4a484463aa19e6515c7fPatch
- https://git.kernel.org/stable/c/999bd704b0b641527a5ed46f0d969deff8cfa68bPatch
- https://git.kernel.org/stable/c/a6a941a1294ac5abe22053dc501d25aed96e48fePatch
- https://git.kernel.org/stable/c/ab09264660f9de5d05d1ef4e225aa447c63a8747Patch
- https://git.kernel.org/stable/c/b36a04284d0208be94e5e401409caa00e2bf1be1Patch
- https://git.kernel.org/stable/c/ea854f032190cc9f26dc4a0e727090c89e55e342Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.