CVE-2026-80885 is a vulnerability in Linux Kernel
Published on September 4, 2026
afs: Fix uncancelled rxrpc OOB message handler
In the Linux kernel, the following vulnerability has been resolved:
afs: Fix uncancelled rxrpc OOB message handler
Fix AFS to cancel its OOB message processing (typically to respond to
security challenges). Also move OOB message processing to afs_wq so that
it's also waited for and make the OOB handler just return if the net
namespace is no longer live.
Products Associated with CVE-2026-80885
Want to know whenever a new CVE is published for Linux Kernel? stack.watch will email you.
Affected Versions
Linux:- Version 5800b1cf3fd8ccab752a101865be1e76dac33142 and below 231414253b648b3518b56f09710b831945d6a2fc is affected.
- Version 5800b1cf3fd8ccab752a101865be1e76dac33142 and below d14e96ddd616c8a9fff3b5bab3bf4af0cfc30ec4 is affected.
- Version 5800b1cf3fd8ccab752a101865be1e76dac33142 and below a4057e58b07005d0fe0491bdbf1868c1491909ee is affected.
- Version 6.16 is affected.
- Before 6.16 is unaffected.
- Version 6.18.40, <= 6.18.* is unaffected.
- Version 7.1.5, <= 7.1.* is unaffected.
- Version 7.2, <= * is unaffected.