{"id":"CVE-2026-89906","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-89906","summary":"In the Linux kernel, the following vulnerability has been resolved:\n\nLoongArch: BPF: Refactor jump offset calculation in tail call\n\nThe old macro-based jmp_offset calculation derives…","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nLoongArch: BPF: Refactor jump offset calculation in tail call\n\nThe old macro-based jmp_offset calculation derives the jump distance\nfrom a stale prior-pass code stride, which can lead to wrong branch\noffsets and soft lockups under extra JIT passes.\n\nFix this by calculating the offset directly on the absolute target:\n\"ctx->offset[insn + 1] - ctx->idx\".\n\nTo avoid a false 16-bit range check abort during size estimation, add\na \"ctx->image == NULL\" guard to inject a safe dummy offset.","published":"2026-09-16T10:32:05.157Z","modified":"2026-09-16T10:32:05.157Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[],"fix":null,"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/882b8912b7e92341fdb115ba0e2e5142a28684ff"},{"type":"WEB","url":"https://git.kernel.org/stable/c/96f44d493c280ea161569c43d7ed0f3b0815803a"},{"type":"WEB","url":"https://git.kernel.org/stable/c/37d545d12f21c4d50612ecaebd7ae1e5bf91b2d8"}],"provenance":{"sources":["OSV.dev","NVD","FIRST.org (EPSS)"],"lastVerified":"2026-09-16T10:32:05.157Z"}}