Memory Handling Vulnerability in Linux Kernel batman-adv by Linux Foundation
CVE-2026-64218

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
24 July 2026

What is CVE-2026-64218?

A vulnerability exists within the Linux kernel's batman-adv component that improperly manages memory during the backbone gateway purge process. Specifically, the batadv_bla_purge_backbone_gw function may lead to improper access of freed memory if report_work is running or pending. To rectify this, the implementation has been restructured to ensure that the lock is acquired and released correctly while processing each entry, thereby preventing potential memory corruption and ensuring stability in the system.

Affected Version(s)

Linux 23721387c409087fd3b97e274f34d3ddc0970b74

Linux 23721387c409087fd3b97e274f34d3ddc0970b74 < 3423a45e5c3d3c5129f88143a9a969787d7d5a0a

Linux 23721387c409087fd3b97e274f34d3ddc0970b74

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.