CVE-2026-93222
unknown
CVSS v3
—
CVSS v4 NEW
—
VIR risk
—
Description
In the Linux kernel, the following vulnerability has been resolved: signal: avoid shared siginfo namespace rewrites send_signal_locked() rewrites sender ids for the target namespace. Group sends reuse the same siginfo, so one recipient can affect the next. Copy the siginfo before changing it.
Predictions
Exploit likelihood
20%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or — if you've already worked around this in production — publish your fix to the community-verified tier.
Propose a mitigation on Community Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
References
- https://git.kernel.org/stable/c/03c8761e75d1619906bb503686f9cc1dfc6a67f4
- https://git.kernel.org/stable/c/148b0dae2a1755beb873a2aab51fb191414f068c
- https://git.kernel.org/stable/c/4ee7c4e4719a825052f42f02ec159b5b42b68fbc
- https://git.kernel.org/stable/c/6b1de022304ef85284c5933a5fb8492f6f54efc9
- https://git.kernel.org/stable/c/a246da20c8e4ae4319511c698b9f26ad0ad1769f
- https://git.kernel.org/stable/c/b655c2040ce836afad5643842543567b31f8c11d
- https://git.kernel.org/stable/c/d19cdc167e696714509e87d3f7ae765b6e164589
- https://git.kernel.org/stable/c/e015d1ac6b43a23c52c5163299414ae77d7d4ae0
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.