Linux Kernel Memory Management Vulnerability in CCP by Vendor
CVE-2026-74403
Currently unrated
What is CVE-2026-74403?
A vulnerability in the Linux kernel affects the CCP subsystem, where improper handling of page allocation failures can lead to dereferencing invalid pointers. Under certain conditions, page_address(NULL) can produce a deterministic, but non-zero, virtual address, exposing the system to potential memory access violations. The bug has been addressed to ensure that the allocation check verifies the page allocation for NULL, mitigating risks associated with this flaw.
Affected Version(s)
Linux 4be423572da1f4c11f45168e3fafda870ddac9f8 < 17e1aae19a06d9f6da4b46d54fa2aeab77ec0c69
Linux 4be423572da1f4c11f45168e3fafda870ddac9f8
Linux 6.19