Memory Allocation Flaw in Linux Kernel xfrm Policy Management
CVE-2026-64579
What is CVE-2026-64579?
A vulnerability in the Linux kernel related to xfrm policy management can lead to memory allocation failures and cause the kernel to panic. The issue arises during the reallocation process where the preallocation of inexact bins is improperly managed. This prevents the system from allocating memory as required, which can result in a general protection fault. Affected systems may experience crashes under memory pressure, triggered by faulty handling within the xfrm_hash_rebuild function, presenting a risk for non-canonical address access and subsequent kernel instability.
Affected Version(s)
Linux 24969facd704a5f0dd8e08da86bf32a9ce972bee
Linux 24969facd704a5f0dd8e08da86bf32a9ce972bee < 94c00391a5117530188334f740ce26d3f1256190
Linux 24969facd704a5f0dd8e08da86bf32a9ce972bee < 7acc5ed2f33608a3d83b64f50a5766843b6e2485