← Back to CVE search

CVE-2026-31670

Rfkill

Description

In the Linux kernel, the following vulnerability has been resolved: net: rfkill: prevent unlimited numbers of rfkill events from being created Userspace can create an unlimited number of rfkill events if the system is so configured, while not consuming them from the rfkill file descriptor, causing a potential out of memory situation. Prevent this from bounding the number of pending rfkill events at a -large- number (i.e. 1000) to prevent abuses like this.

CVSS 5.5EPSS 0.12%Risk 0.56
View source
Published
2026-04-24 15:16:46
Affected versions
unknown
Type
Core software
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Operating systems
Linux