CVE-2026-31574

Aliases:UBUNTU-CVE-2026-31574CGA-2j7x-4jf4-8v7hCGA-86qq-7cjv-xqxrCGA-8rg9-2j6m-qg2hCGA-94jc-g7rv-jwh8CGA-c88m-23cq-ph6mCGA-j64m-jvrv-w7c8CGA-jpgj-523x-c75xCGA-v23v-grh4-m4mr
Analyzed
Published: 24 Apr 2026, 14:42
Last modified:14 Jun 2026, 17:41

Vulnerability Summary

Overall Risk (default)
low
22/100
CVSS Score
5.5 MEDIUM
v3.1 (nvd)
EPSS Score
0.11% LOW
0% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

24 Apr 2026, 14:42
Published
Vulnerability first disclosed
14 Jun 2026, 17:41
Last Modified
Vulnerability information updated

Description

In the Linux kernel, the following vulnerability has been resolved: clockevents: Add missing resets of the next_event_forced flag The prevention mechanism against timer interrupt starvation missed to reset the next_event_forced flag in a couple of places: - When the clock event state changes. That can cause the flag to be stale over a shutdown/startup sequence - When a non-forced event is armed, which then prevents rearming before that event. If that event is far out in the future this will cause missed timer interrupts. - In the suspend wakeup handler. That led to stalls which have been reported by several people. Add the missing resets, which fixes the problems for the reporters.

CVSS Metrics

  • v3.1MEDIUMScore: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

EPSS Trends

Current EPSS score: 0.11% Percentile: 1%

Affected Systems

  • chainguardlinux-aws-6.18

    < 6.18.24-r0

  • chainguardlinux-azure-6.18

    < 6.18.24-r0

  • chainguardlinux-gcp-6.18

    < 6.18.24-r0

  • chainguardlinux-qemu-6.18

    < 6.18.24-r2

  • chainguardlinux-qemu-6.18-bootc-boot-installed

    < 6.18.24-r2

  • chainguardlinux-qemu-melange

    < 6.18.25-r0

  • chainguardlinux-qemu-rc

    < 7.0_rc5-r1

  • chainguardlinux-vmware-6.18

    < 6.18.24-r0

  • ubuntulinux

    < 7.0.0-27.27

  • ubuntulinux-allwinner-5.19

    all

  • ubuntulinux-aws

    < 7.0.0-1008.8

  • ubuntulinux-aws-5.0

    all

  • ubuntulinux-aws-5.11

    all

  • ubuntulinux-aws-5.13

    all

  • ubuntulinux-aws-5.19

    all

  • ubuntulinux-aws-5.3

    all

  • ubuntulinux-aws-5.8

    all

  • ubuntulinux-aws-6.14

    all

  • ubuntulinux-aws-6.2

    all

  • ubuntulinux-aws-6.5

    all

  • ubuntulinux-azure

    all | < 7.0.0-1010.10

  • ubuntulinux-azure-5.11

    all

  • ubuntulinux-azure-5.13

    all

  • ubuntulinux-azure-5.19

    all

  • ubuntulinux-azure-5.3

    all

  • ubuntulinux-azure-5.8

    all

  • ubuntulinux-azure-6.11

    all

  • ubuntulinux-azure-6.2

    all

  • ubuntulinux-azure-6.5

    all

  • ubuntulinux-azure-edge

    all

  • ubuntulinux-azure-fde

    all | < 7.0.0-1009.9

  • ubuntulinux-azure-fde-5.19

    all

  • ubuntulinux-azure-fde-6.2

    all

  • ubuntulinux-bluefield

    all

  • ubuntulinux-gcp

    all | < 7.0.0-1007.7

  • ubuntulinux-gcp-5.11

    all

  • ubuntulinux-gcp-5.13

    all

  • ubuntulinux-gcp-5.19

    all

  • ubuntulinux-gcp-5.3

    all

  • ubuntulinux-gcp-5.8

    all

  • ubuntulinux-gcp-6.11

    all

  • ubuntulinux-gcp-6.14

    all

  • ubuntulinux-gcp-6.2

    all

  • ubuntulinux-gcp-6.5

    all

  • ubuntulinux-gke

    all

  • ubuntulinux-gke-4.15

    all

  • ubuntulinux-gke-5.15

    all

  • ubuntulinux-gke-5.4

    all

  • ubuntulinux-gkeop

    all

  • ubuntulinux-gkeop-5.15

    all

Showing first 50 affected entries in server-rendered view.

References (10)