---
cve: "CVE-2026-53157"
severity: "LOW"
cvss: 3.1
epss: "13%"
vendor: "Linux"
kev: false
exploited: false
published: "2026-06-25 09:16:33"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-08T16:07:43+02:00"
---

# CVE-2026-53157

> 3.1 LOW

## Beschreibung

In the Linux kernel, the following vulnerability has been resolved:

net: phonet: free phonet_device after RCU grace period

phonet_device_destroy() removes a phonet_device from the per-net device
list with list_del_rcu(), but frees it immediately. RCU readers walking
the same list can still hold a pointer to the object after it has been
removed, leading to a slab-use-after-free.

Use kfree_rcu(), matching the lifetime rule already used by
phonet_address_del() for the same object type.

## Patch verfügbar (OSV)

- Kernel ≥ 5.10.260
- Kernel ≥ 5.15.211
- Kernel ≥ 6.1.177
- Kernel ≥ 6.6.144
- Kernel ≥ 6.12.95
- Kernel ≥ 6.18.36
- Kernel ≥ 7.0.13

## Referenzen

- <https://git.kernel.org/stable/c/d59794337ea496042288c7c68356d9b9ca7f46a9>
- <https://git.kernel.org/stable/c/6cd7067d6e4b0b2033ba2f918ecbd54dc2af3763>
- <https://git.kernel.org/stable/c/2ec8011cce0cd0fc7a5068585d867fc08d508578>
- <https://git.kernel.org/stable/c/09c9b92c2010481160245244ea8fa1d06d5d4ae0>
- <https://git.kernel.org/stable/c/bd2ab4d800fc26814d89328d87b5f97ef6aa906a>
- <https://git.kernel.org/stable/c/52b8f5ef82c886f7cd24617915e4b1579ddfd001>
- <https://git.kernel.org/stable/c/bff309ea51f1395c1ef8be8b75ce62d28a319113>
- <https://git.kernel.org/stable/c/71de0177b28da751f407581a4515cf4d762f6296>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2026-53157) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
