Memory Management Issue in Linux Kernel ARM Integrator
CVE-2026-64165

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
19 July 2026

What is CVE-2026-64165?

A vulnerability exists in the ARM Integrator within the Linux kernel due to improper handling of memory allocation during early initialization. The failure to initialize the memory management code can lead to a crash or unexpected behavior. This occurs when the 'intcp_init_early' function calls 'syscon_regmap_lookup_by_compatible', which may return an error or dereference a null pointer, resulting in a kernel panic. The issue is exacerbated on certain compiler versions (i.e., GCC 10.x, 11.x, 13.x), where it can lead to system instability. This vulnerability underscores the importance of proper early setup in system initialization to prevent such crashes.

Affected Version(s)

Linux bdb249fce9ad44aab340be3b7a77060114f7193b < 22c738fb51f2d8b23ddff5cc0ccb2dd685bb39d3

Linux bdb249fce9ad44aab340be3b7a77060114f7193b < 812103fb6da904bd03d62cf6a9826e537318ceed

Linux bdb249fce9ad44aab340be3b7a77060114f7193b < 6624854554c4c2bdfed3559e5c11bb03b16e7bd1

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.