Linux Kernel Vulnerability in HugeTLB Page Management - Affects Various Distributions
CVE-2026-80893
What is CVE-2026-80893?
A vulnerability in the Linux kernel relates to the management of HugeTLB pages, specifically during the process of clearing the userfaultfd write-protect (uffd-wp) state at the fork operation. This issue arises when handling migration and hardware poisoned entries, leading to potential data corruption during the forking of processes. The improper handling of swap entries can lead to offsets being incorrectly altered, resulting in latent issues that could affect memory stability and security, especially for applications leveraging large memory pages.
Affected Version(s)
Linux bc70fbf269fdff410b0b6d75c3770b9f59117b90
Linux bc70fbf269fdff410b0b6d75c3770b9f59117b90 < 69cb5825d9988c7944bc9f1dc08cb233655405a7
Linux bc70fbf269fdff410b0b6d75c3770b9f59117b90 < 8b0de7005b148738d79d6c45594d566489948a68