Critical severity9.8NVD Advisory· Published May 28, 2026· Updated Jun 24, 2026
CVE-2026-46137
CVE-2026-46137
Description
In the Linux kernel, the following vulnerability has been resolved:
mptcp: pm: ADD_ADDR rtx: fix potential data-race
This mptcp_pm_add_timer() helper is executed as a timer callback in softirq context. To avoid any data races, the socket lock needs to be held with bh_lock_sock().
If the socket is in use, retry again soon after, similar to what is done with the keepalive timer.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
19- osv-coords15 versionspkg:rpm/opensuse/kernel-source&distro=openSUSE%20Tumbleweedpkg:linux/kernelpkg:rpm/opensuse/kernel-obs-build&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/dtb-aarch64&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/kernel-64kb&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/kernel-azure&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/kernel-default&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/kernel-default-base&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/kernel-docs&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/kernel-kvmsmall&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/kernel-zfcpdump&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/kernel-obs-qa&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/kernel-rt&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/kernel-source&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/kernel-syms&distro=openSUSE%20Leap%2016.0
< 7.0.11-1.1+ 14 more
- (no CPE)range: < 7.0.11-1.1
- (no CPE)range: >= 5.10.0, < 5.10.259
- (no CPE)range: < 6.12.0-160000.37.1
- (no CPE)range: < 6.12.0-160000.37.1
- (no CPE)range: < 6.12.0-160000.37.1
- (no CPE)range: < 6.12.0-160000.37.1
- (no CPE)range: < 6.12.0-160000.37.1
- (no CPE)range: < 6.12.0-160000.37.1.160000.2.19
- (no CPE)range: < 6.12.0-160000.37.1
- (no CPE)range: < 6.12.0-160000.37.1
- (no CPE)range: < 6.12.0-160000.37.1
- (no CPE)range: < 6.12.0-160000.37.1
- (no CPE)range: < 6.12.0-160000.37.1
- (no CPE)range: < 6.12.0-160000.37.1
- (no CPE)range: < 6.12.0-160000.37.1
Patches
Vulnerability mechanics
References
8- git.kernel.org/stable/c/013dcdc1961543b9a3433466bc8c79a2f4ca75b5nvdPatch
- git.kernel.org/stable/c/23079e0b7742ec114d3507c3e3aad01b7b69e4afnvdPatch
- git.kernel.org/stable/c/2ad56e434199ca24a812bb353667aa1c3860f513nvdPatch
- git.kernel.org/stable/c/5cd6e0ad79d2615264f63929f8b457ad97ae550dnvdPatch
- git.kernel.org/stable/c/6e4710d7d8782cb61af29a7e7111ddfc38b9e1a3nvdPatch
- git.kernel.org/stable/c/b35605e1f1e877038c8c9d499babbc891cdd234fnvdPatch
- git.kernel.org/stable/c/cc3c0399361efaaf7ae64262eb3f70829b1189c6nvdPatch
- git.kernel.org/stable/c/d9b272a85fe6b8f993e37915311e4038c814a533nvdPatch
News mentions
0No linked articles in our index yet.