CVE-2024-26585: exploitation status and patch state

CVE-2024-26585 · CVSS 4.7 MEDIUM · EPSS 1%

In the Linux kernel, the following vulnerability has been resolved: tls: fix race between tx work scheduling and socket close Similarly to previous commit, the submitting thread (recvmsg/sendmsg) may exit as soon as the async crypto handler calls complete(). Reorder scheduling the work before calling complete(). This seems more logical in the first place, as it's the inverse order of what the submitting thread will do.

Is CVE-2024-26585 exploited?

Which products and versions are affected?

No affected package list recorded here yet.

Is there a patch?

No patch identifier recorded here yet.

What PlainSec published about CVE-2024-26585

Primary sources

What this record does not say

KEV and EPSS are re-checked daily. Record last updated 2026-08-15.