Memory Leak Vulnerability in Linux Kernel Affecting Intel Products
CVE-2026-74699
Currently unrated
What is CVE-2026-74699?
A memory leak vulnerability has been identified in the Linux kernel, specifically in the handling of the exec_queue_set_hang_replay_state function. This issue arises when the replay_state is unintentionally overwritten without appropriate checks, potentially resulting in leaked memory that was allocated through vmemdup_user(). The vulnerability was discovered through AI-assisted static analysis and confirmed by Intel Product Security. The fix ensures that an error is returned if the replay_state queue is not empty, thus preventing inadvertent memory leaks.
Affected Version(s)
Linux 1026c1a73a9686ff35ac100039f94f0725622447 < 410596743958fbddeb845ff3efe2645397d7c7e2
Linux 1026c1a73a9686ff35ac100039f94f0725622447
Linux 7.0