Memory Management Vulnerability in Linux Kernel Affecting Page Allocation
CVE-2026-80718
What is CVE-2026-80718?
A vulnerability in the Linux kernel's memory management involving incorrect bitmap overflow and accounting during the allocation of contiguous memory pages has been identified. This issue arises in the pcpu_create_chunk() function, where the number of pages allocated is incorrectly handled, which can lead to overwriting beyond allocated bitmap size. The oversight not only affects the chunk's populated bitmap but also disrupts the global accounting of empty pages. Addressing this vulnerability ensures proper memory handling and enhances system stability.
Affected Version(s)
Linux a63d4ac4ab6094c051a5a240260d16117a7a2f86 < 5f43d2c1bea280dcdfabaf156c25e7402fb8039f
Linux a63d4ac4ab6094c051a5a240260d16117a7a2f86 < 92c43ac3c2b09eb16162e8144e73c00b7c3e29d6
Linux a63d4ac4ab6094c051a5a240260d16117a7a2f86 < 6fc7da2a052f2825fff785e860e67183f5acaaba