CVE-2026-46215 – Linux

CVSS 7.8 IMPORTANT Zero Day – Immediate Deployment

“A race condition in the kernel can turn a routine operation into a serious memory safety risk.”

The Linux kernel has been patched for CVE-2026-46215, a race condition in the DRM handle-management process. Concurrent operations could leave a dangling handle that was later dereferenced, resulting in a use-after-free condition. The update prevents the old handle from being reused while PRIME operations are completed.

The CVSS score is 7.8, which is High severity. Public proof-of-concept code is available, increasing the risk that the vulnerability could be tested or adapted against unpatched systems.

Key Details

Affected Product
Linux Linux Kernel
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
CWE Classification
CWE-416
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.