Memory Management Issue in Linux Kernel ARM Integrator
CVE-2026-64165
What is CVE-2026-64165?
A vulnerability exists in the ARM Integrator within the Linux kernel due to improper handling of memory allocation during early initialization. The failure to initialize the memory management code can lead to a crash or unexpected behavior. This occurs when the 'intcp_init_early' function calls 'syscon_regmap_lookup_by_compatible', which may return an error or dereference a null pointer, resulting in a kernel panic. The issue is exacerbated on certain compiler versions (i.e., GCC 10.x, 11.x, 13.x), where it can lead to system instability. This vulnerability underscores the importance of proper early setup in system initialization to prevent such crashes.
Affected Version(s)
Linux bdb249fce9ad44aab340be3b7a77060114f7193b < 22c738fb51f2d8b23ddff5cc0ccb2dd685bb39d3
Linux bdb249fce9ad44aab340be3b7a77060114f7193b < 812103fb6da904bd03d62cf6a9826e537318ceed
Linux bdb249fce9ad44aab340be3b7a77060114f7193b < 6624854554c4c2bdfed3559e5c11bb03b16e7bd1