CVE-2026-80619 PUBLISHED

apparmor: fix potential UAF in aa_replace_profiles

Assigner: Linux
Reserved: 26.08.2026 Published: 28.08.2026 Updated: 28.08.2026

In the Linux kernel, the following vulnerability has been resolved:

apparmor: fix potential UAF in aa_replace_profiles

The function aa_replace_profiles was accessing udata->size after calling aa_put_loaddata(udata), causing a potential UAF.

Fixed this by saving the size to a local variable before dropping the reference.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 5ac8c355ae0013d82b3a07b49aebeadfce9b6e52 to 9d8e47cbce7536f19c96e37d0685a042010187ee (excl.)
  • affected from 5ac8c355ae0013d82b3a07b49aebeadfce9b6e52 to 9d37dc6376e336dc4b4f39a7ad0d069aa70e9495 (excl.)
  • affected from 5ac8c355ae0013d82b3a07b49aebeadfce9b6e52 to c0f3a3fda617beeec58708720304dd026a1a4dd7 (excl.)
  • affected from 5ac8c355ae0013d82b3a07b49aebeadfce9b6e52 to 5cba148eae6e8550c2889f5c0f94d72bed864321 (excl.)
  • affected from 5ac8c355ae0013d82b3a07b49aebeadfce9b6e52 to c44de0880b7ccc15c70a6352b5e107677d32b061 (excl.)
  • affected from 5ac8c355ae0013d82b3a07b49aebeadfce9b6e52 to 57b1bd4486d56254bb8af1a8f3d4445bbe505290 (excl.)
  • affected from 5ac8c355ae0013d82b3a07b49aebeadfce9b6e52 to dd5f1202f45a2dbe2c7dd10093f5c6bb2d8ac5bb (excl.)
  • affected from 5ac8c355ae0013d82b3a07b49aebeadfce9b6e52 to 7b42f95813dc9ceb6bda35afcf914630909a19f9 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 4.11 is affected
  • unaffected from 0 to 4.11 (excl.)
  • unaffected from 5.10.261 to 5.10.* (incl.)
  • unaffected from 5.15.212 to 5.15.* (incl.)
  • unaffected from 6.1.178 to 6.1.* (incl.)
  • unaffected from 6.6.145 to 6.6.* (incl.)
  • unaffected from 6.12.97 to 6.12.* (incl.)
  • unaffected from 6.18.40 to 6.18.* (incl.)
  • unaffected from 7.1.5 to 7.1.* (incl.)
  • unaffected from 7.2 to * (incl.)

References