{"apiVersion":"1.0","identifier":"CVE-2026-74512","description":"In the Linux kernel, the following vulnerability has been resolved: audit: fix potential use-after-free in audit_del_rule() `audit_del_rule()` destroys `e->rule.exe` via `audit_remove_mark_rule()` before unlinking the rule from RCU-visible filter lists and waiting for a grace period. Concurrent readers in `audit_filter()` and `audit_filter_rules()` still dereference `e->rule.exe`, while the fsnotify mark can be freed on an independent lifetime path. This creates a use-after-free window during rule deletion. Fix this by unlinking the rule from the RCU-visible lists and invoking `synchronize_rcu()` before calling `audit_remove_mark_rule()` (and other rule removal helpers). This ensures that all existing RCU readers have exited the critical section before any underlying resources are destroyed.","publishedAt":"2026-08-15T13:17:56","lastModifiedAt":"2026-08-19T17:21:07","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-74512","cvssScore":7.8,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","epssProbability":0.00126,"riskScore":0.79,"affectedProduct":"linux","affectedVersions":"unknown","vulnerabilityType":"Kernel","operatingSystems":[],"links":{"self":"https://www.redsauce.net/api/cves/CVE-2026-74512","webPages":{"es":"https://www.redsauce.net/es/cves/CVE-2026-74512","en":"https://www.redsauce.net/en/cves/CVE-2026-74512","fr":"https://www.redsauce.net/fr/cves/CVE-2026-74512","pt":"https://www.redsauce.net/pt/cves/CVE-2026-74512","de":"https://www.redsauce.net/de/cves/CVE-2026-74512","sk":"https://www.redsauce.net/sk/cves/CVE-2026-74512","el":"https://www.redsauce.net/el/cves/CVE-2026-74512"},"source":"https://nvd.nist.gov/vuln/detail/CVE-2026-74512"}}