Description
In the Linux kernel, the following vulnerability has been resolved:

ARM: 9484/1: enable interrupts when unhandled user faults are triggered

PREEMPT_RT requires interrupts to be enabled when sending signals.

When do_DataAbort()/do_PrefetchAbort() triggers unhandled user faults,
that is `inf->fn()` return a non-zero value, and the interrupts are not
enabled within the hook function, force_sig_fault() will be called
with interrupts disabled.

This can be triggered by user programs executing the bkpt instruction,
with kernel config CONFIG_PERF_EVENTS=n.

Enable interrupts in do_DataAbort()/do_PrefetchAbort() when unhandled
user faults are triggered to fix the issue.
Published: 2026-09-17
Score: n/a
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Apply Patch
AI Analysis

Impact

The flaw arises in the Linux kernel’s ARM implementation when a user‐mode program triggers an unhandled fault via the bkpt instruction. The fault handlers do_DataAbort() and do_PrefetchAbort() do not enable interrupts before calling force_sig_fault(), leaving the processor in a state where interrupts are disabled during signal delivery. This can cause the kernel to stall or misbehave, effectively denying service to the affected system or applications.

Affected Systems

All ARM‑based Linux kernel builds that include the default exception handling code and have CONFIG_PERF_EVENTS disabled are impacted. The issue applies to the Linux kernel as a whole; specific version ranges are not listed, so any kernel that has not applied the patch is potentially affected.

Risk and Exploitability

The EPSS score is below 1 %, indicating that the likelihood of exploitation is currently very low. The vulnerability is not listed in the CISA KEV catalog, and it requires a local user program to execute bkpt to trigger the fault. Because it is a kernel‑level bug that can cause a system halt or loss of responsiveness, the CVSS severity, while not provided, would be high if assessed. Given the low exploitation probability and the requirement for a local user program, the overall risk is moderate to low, but the potential impact of denial of service justifies prompt remediation.

Generated by OpenCVE AI on September 19, 2026 at 04:02 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the Linux kernel patch that enables interrupts in do_DataAbort()/do_PrefetchAbort() when unhandled user faults are triggered (official CNA solution).
  • Upgrade the kernel to the latest stable release that includes the described patch.
  • If a patch is not yet available for your distribution, track vendor advisories for a backport and avoid running untrusted code that could trigger bkpt until a fix is applied.

Generated by OpenCVE AI on September 19, 2026 at 04:02 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 19 Sep 2026 04:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-305
CWE-665

Thu, 17 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: ARM: 9484/1: enable interrupts when unhandled user faults are triggered PREEMPT_RT requires interrupts to be enabled when sending signals. When do_DataAbort()/do_PrefetchAbort() triggers unhandled user faults, that is `inf->fn()` return a non-zero value, and the interrupts are not enabled within the hook function, force_sig_fault() will be called with interrupts disabled. This can be triggered by user programs executing the bkpt instruction, with kernel config CONFIG_PERF_EVENTS=n. Enable interrupts in do_DataAbort()/do_PrefetchAbort() when unhandled user faults are triggered to fix the issue.
Title ARM: 9484/1: enable interrupts when unhandled user faults are triggered
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-09-17T16:08:27.095Z

Reserved: 2026-09-11T19:38:34.800Z

Link: CVE-2026-90304

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-17T17:17:28.050

Modified: 2026-09-17T17:17:28.050

Link: CVE-2026-90304

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-19T05:00:08Z

Weaknesses
  • CWE-305

    Authentication Bypass by Primary Weakness

  • CWE-665

    Improper Initialization