A flaw was found in multipathd. (CVE-2026-89329)
CVE-2026-89329 is a local denial of service vulnerability in multipathd. A local attacker with access to the multipathd UNIX control socket can send valid commands and then stop reading replies, causing the listener thread to block. This results in legitimate IPC operations hanging or timing out. The vulnerability does not allow privilege escalation, code execution, or affect data confidentiality or integrity. Mitigation involves restricting local access to the multipathd IPC socket to trusted administrators only.
AI Analysis
Technical Summary
A flaw in multipathd allows a local attacker with access to the UNIX control socket to cause the multipathd listener thread to block by sending valid commands and ceasing to read replies. This blocks legitimate IPC operations, causing a denial of service. The vulnerability does not lead to privilege escalation, arbitrary code execution, or compromise confidentiality or integrity. The issue is practically reachable in default local IPC exposure scenarios. Red Hat advises implementing strict local access controls on systems running multipathd to prevent exploitation.
Potential Impact
The vulnerability causes a denial of service by blocking the multipathd listener thread, which leads to legitimate IPC operations hanging or timing out. There is no impact on privilege escalation, code execution, or data confidentiality and integrity.
Mitigation Recommendations
Implement strict local access controls on systems running multipathd to restrict access to the UNIX control socket. Ensure only trusted administrators have local access to prevent exploitation of the IPC socket. No official patch or fix is currently confirmed; check vendor advisories for updates.
A flaw was found in multipathd. (CVE-2026-89329)
Description
CVE-2026-89329 is a local denial of service vulnerability in multipathd. A local attacker with access to the multipathd UNIX control socket can send valid commands and then stop reading replies, causing the listener thread to block. This results in legitimate IPC operations hanging or timing out. The vulnerability does not allow privilege escalation, code execution, or affect data confidentiality or integrity. Mitigation involves restricting local access to the multipathd IPC socket to trusted administrators only.
CVSS v3.1
Score 6.2medium
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
A flaw in multipathd allows a local attacker with access to the UNIX control socket to cause the multipathd listener thread to block by sending valid commands and ceasing to read replies. This blocks legitimate IPC operations, causing a denial of service. The vulnerability does not lead to privilege escalation, arbitrary code execution, or compromise confidentiality or integrity. The issue is practically reachable in default local IPC exposure scenarios. Red Hat advises implementing strict local access controls on systems running multipathd to prevent exploitation.
Potential Impact
The vulnerability causes a denial of service by blocking the multipathd listener thread, which leads to legitimate IPC operations hanging or timing out. There is no impact on privilege escalation, code execution, or data confidentiality and integrity.
Mitigation Recommendations
Implement strict local access controls on systems running multipathd to restrict access to the UNIX control socket. Ensure only trusted administrators have local access to prevent exploitation of the IPC socket. No official patch or fix is currently confirmed; check vendor advisories for updates.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- GHSA-gm43-73c3-chhw
- Osv Schema Version
- 1.4.0
- Aliases
- ["CVE-2026-89329"]
- Database Specific Severity
- MODERATE
- Cvss Version
- 3.1
- State
- PUBLISHED
Threat ID: 6aa4a03455bf5e2cf5a8740b
Added to database: 09/12/2026, 00:43:32 UTC
Last enriched: 09/12/2026, 01:28:29 UTC
Last updated: 09/12/2026, 04:01:23 UTC
Views: 5
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.