CVE-2026-97567: Linux

EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: mptcp: prevent race between disconnect() and rtx Sashiko noted that the two event can race, leading to inconsistent status. Prevent the race using the synchronous timer stop operation.

Affected products

  • Linux Linux: from 5.17, before 6.18.53 (fixed in 6.18.53); from 6.19, before 7.2.7 (fixed in 7.2.7)

Published 2026-09-25. Last modified 2026-09-25.