CVE-2026-89748Medium· 5.5▾ SunlitA flaw was found in the Linux kernel's tracing subsystem. An issue in the `simple_ring_buffer_swap_reader_page()` function, related to retry exhaustion during ring buffer reader page swaps, can lead to incorrect handling of successful or f…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 30.3 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Sep 12.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via CSAF
0.2%
— → 6.1
— → 6.1
none → medium
— → 7.8
none → high
7.8 → 6.1
high → medium
6.1 → 7.8
medium → high
7.8 → 6.1
high → medium
Last analysed / modified upstream
6.1 → 5.5
A flaw was found in the Linux kernel's tracing subsystem. An issue in the simple_ring_buffer_swap_reader_page() function, related to retry exhaustion during ring buffer reader page swaps, can lead to incorrect handling of successful or failed operations. This can result in corruption of the ring buffer, potentially causing system instability or denial of service.
kernel: tracing: Fix retry exhaustion in simple ring buffer reader swap — rated Moderate by Red Hat. Released 2026-09-11, updated 2026-09-21.
Not affected:
Refer to the advisory for fix availability.
Field changes observed since this record was first indexed.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-89436Medium· 5.5kernel: platform/x86: panasonic-laptop: Fix sentinel write past pcc->sinf[] (CVE-2026-89436)
CVE-2026-89513Medium· 5.5kernel: RISC-V: KVM: Fix PMU event info array size overflow (CVE-2026-89513)
CVE-2026-89610Medium· 5.5kernel: ntfs: verify run length exceeding volume boundary (CVE-2026-89610)
CVE-2026-89611Medium· 5.5kernel: ntfs: validate non-resident attribute offsets (CVE-2026-89611)
CVE-2026-89612Medium· 5.5kernel: ntfs: reject invalid MFT LCNs from boot sector (CVE-2026-89612)
CVE-2026-89471Medium· 5.5kernel: power: supply: cros_usbpd-charger: bound the EC-reported port count (CVE-2026-89471)