{"id":"CVE-2026-90217","published":"2026-09-17T17:17:17.033","lastModified":"2026-09-18T18:17:46.850","description":"In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Compare iterator types during state pruning\n\nAn iterator stack slot can be MEM_RCU or PTR_UNTRUSTED. These states\nmust not be equal, or the verifier can prune an unsafe path.\n\nCompare the pointer type for STACK_ITER slots.","cvssScore":7.8,"cvssSeverity":"HIGH","cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwes":[],"vendors":[],"products":[],"references":[{"url":"https://git.kernel.org/stable/c/6424b9cde9edc7f2098115bbfd1ee3d84a958380","tags":[]},{"url":"https://git.kernel.org/stable/c/83608e303b95d07afba1c15da0b5d9e513c2f15a","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}