VDB

CVE-2026-71226

CVE-2026-71226 PUBLISHED CVSS 7.300000190734863 HIGH

Memory Corruption via Uncanceled AIO Requests on Error: libkcapi's one-shot AIO path can return an error before all submitted IOCBs are drained, allowing later kernel writes into caller-owned output buffers.

EPSS 0.14% · 3.3th percentile

Risk Scores

CVSS 3.1
7.300000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H
EPSS Score
0.14%
3.3th percentile

Affected Products

VendorProductVersions
Red HatRed Hat OpenShift Container Platform 4
Red HatRed Hat Enterprise Linux 8
Red HatRed Hat Hardened Images
Red HatRed Hat Enterprise Linux 10
Red HatRed Hat Enterprise Linux 9

Timeline

  • Aug 5, 2026 Coalition ESS Score
  • Aug 5, 2026 CVE Published
  • Aug 6, 2026 Security Advisory
  • Aug 7, 2026 EPSS Score
  • Aug 19, 2026 CVE Updated
  • Aug 24, 2026 EPSS Score
  • Sep 9, 2026 EPSS Score
  • Sep 15, 2026 EPSS Score
  • Sep 15, 2026 Distribution Patch
  • Sep 15, 2026 Distribution Patch
  • Sep 15, 2026 Distribution Patch
  • Sep 15, 2026 Distribution Patch
Open in Interactive Console →
$ Console Community · 100/wk Open console ›