CVE-2026-64150 is a vulnerability in Linux Kernel
Published on July 19, 2026
netfilter: nft_inner: release local_lock before re-enabling softirqs
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nft_inner: release local_lock before re-enabling softirqs
Quoting sashiko:
In the error path, local_bh_enable() is called before
local_unlock_nested_bh().
Products Associated with CVE-2026-64150
Want to know whenever a new CVE is published for Linux Kernel? stack.watch will email you.
Affected Versions
Linux:- Version ba36fada9ab487634f61f92769c95bc148aa8f49 and below df19b6af171695a1352314597c9a4311d48d5171 is affected.
- Version ba36fada9ab487634f61f92769c95bc148aa8f49 and below 6fecd39c6401134b58505bc4eb1adc8a0e2fe992 is affected.
- Version ba36fada9ab487634f61f92769c95bc148aa8f49 and below a6cb3ff979855f7f0ee9450a947fe8f96c2ba37a is affected.
- Version 6.16 is affected.
- Before 6.16 is unaffected.
- Version 6.18.34, <= 6.18.* is unaffected.
- Version 7.0.11, <= 7.0.* is unaffected.
- Version 7.1, <= * is unaffected.