Security Advisory

CVE-2026-71227

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-05 12:42:10
Last updated 2026-08-05 13:10:21
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

A flaw was found in libkcapi. A local attacker can influence an application that uses the Asynchronous Input/Output (AIO) interface. By reusing an AIO-enabled handle after a prior completion error, the _kcapi_aio_read_all() function can enter a non-terminating wait loop. This can lead to a persistent denial of service, making the affected application or thread unresponsive.