Memory Access Flaw in Linux Kernel x86 Platform by Vendor
CVE-2026-64235

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
24 July 2026

What is CVE-2026-64235?

A memory access vulnerability in the Linux kernel affects x86 platforms, particularly with the CONFIG_CALL_DEPTH_TRACKING enabled. When a dynamic ftrace trampoline is registered, it can lead to a page fault, causing a kernel panic and ultimately crashing the system. This occurs due to incorrect %rip-relative addressing, which fails to retrieve the per-cpu call depth value correctly. Fixing this requires adjustments to ensure the trampoline functions reliably without causing instability in the kernel.

Affected Version(s)

Linux 59bec00ace28d565ae0a68b23063ef3b961d82d5 < 8093442a2d1d4b42b9340a86023ccb2afb30b93a

Linux 59bec00ace28d565ae0a68b23063ef3b961d82d5

Linux 59bec00ace28d565ae0a68b23063ef3b961d82d5 < 9edff632ca216169846f8a63a5a3dc467e239c7a

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.