Linux hwe edge: In the Linux kernel, the following vulnerability has been resolved: fuse-uring: Avoid use-after-free in fuse_uring_async_stop_queues… (CVE-2026-64261)
A use-after-free vulnerability in the Linux kernel's fuse-uring subsystem was resolved. The issue occurs in the fuse_uring_async_stop_queues function, which might execute after the last reference on ring->queue_refs has been dropped, potentially leading to early destruction of resources. The fix involves taking a reference on the fuse_conn structure before starting the asynchronous stop queues and releasing it only after the delayed work queue terminates.
AI Analysis
Technical Summary
CVE-2026-64261 addresses a use-after-free vulnerability in the Linux kernel's fuse-uring implementation. Specifically, fuse_uring_async_stop_queues() could run when the last reference on ring->queue_refs had already been dropped, risking use-after-free conditions. The resolution involves acquiring a reference on the fuse_conn structure before initiating fuse_uring_async_stop_queues() and releasing it only after the delayed work queue finishes, preventing premature resource destruction.
Potential Impact
Successful exploitation could lead to use-after-free conditions, which may allow an attacker with local privileges to cause memory corruption, potentially resulting in privilege escalation or denial of service. The CVSS score of 7.8 indicates high impact on confidentiality, integrity, and availability.
Mitigation Recommendations
A fix has been implemented in the Linux kernel to address this vulnerability by managing references properly in fuse_uring_async_stop_queues. Users should apply the official kernel updates or patches provided by their Linux distribution to remediate this issue. Since no explicit patch links are provided here, users should consult their vendor or distribution security advisories for the relevant updates.
Linux hwe edge: In the Linux kernel, the following vulnerability has been resolved: fuse-uring: Avoid use-after-free in fuse_uring_async_stop_queues… (CVE-2026-64261)
Description
A use-after-free vulnerability in the Linux kernel's fuse-uring subsystem was resolved. The issue occurs in the fuse_uring_async_stop_queues function, which might execute after the last reference on ring->queue_refs has been dropped, potentially leading to early destruction of resources. The fix involves taking a reference on the fuse_conn structure before starting the asynchronous stop queues and releasing it only after the delayed work queue terminates.
CVSS v3.1
Score 7.8high
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
CVE-2026-64261 addresses a use-after-free vulnerability in the Linux kernel's fuse-uring implementation. Specifically, fuse_uring_async_stop_queues() could run when the last reference on ring->queue_refs had already been dropped, risking use-after-free conditions. The resolution involves acquiring a reference on the fuse_conn structure before initiating fuse_uring_async_stop_queues() and releasing it only after the delayed work queue finishes, preventing premature resource destruction.
Potential Impact
Successful exploitation could lead to use-after-free conditions, which may allow an attacker with local privileges to cause memory corruption, potentially resulting in privilege escalation or denial of service. The CVSS score of 7.8 indicates high impact on confidentiality, integrity, and availability.
Mitigation Recommendations
A fix has been implemented in the Linux kernel to address this vulnerability by managing references properly in fuse_uring_async_stop_queues. Users should apply the official kernel updates or patches provided by their Linux distribution to remediate this issue. Since no explicit patch links are provided here, users should consult their vendor or distribution security advisories for the relevant updates.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- GHSA-49p8-h7pf-grwp
- Osv Schema Version
- 1.4.0
- Aliases
- ["CVE-2026-64261"]
- Ecosystems
- []
- Database Specific Severity
- null
- Cvss Version
- null
Threat ID: 6a65420f9c2644c7f8086c55
Added to database: 07/25/2026, 23:09:03 UTC
Last enriched: 08/15/2026, 03:20:26 UTC
Last updated: 09/07/2026, 10:52:10 UTC
Views: 57
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.