{"id":"AZL-101189","summary":"CVE-2026-89998 affecting package kernel 6.6.150.1-1","details":"In the Linux kernel, the following vulnerability has been resolved:\n\ndm: fix race when loading and unloading a table\n\nIf the userspace calls two concurrent table load ioctls and one of them\nsucceeds and the other fails, there is a race condition because\ndm_setup_md_queue walks &md-\u003etable_devices without any lock. If the walk\nraces with dm_table_destroy -\u003e free_devices -\u003e dm_put_table_device, there\nis access to invalid memory.\n\nFix this race by extending the lock over the list walk.","modified":"2026-09-17T14:15:45.455174897Z","published":"2026-09-16T11:17:11Z","upstream":["CVE-2026-89998"],"references":[{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-89998"}],"affected":[{"package":{"name":"kernel","ecosystem":"Azure Linux:3","purl":"pkg:rpm/azure-linux/kernel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"last_affected":"6.6.150.1-1"}]}],"database_specific":{"source":"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-101189.json"}}],"schema_version":"1.9.0"}