Memory Management Vulnerability in Linux Kernel Affecting Various Systems
CVE-2026-89754
What is CVE-2026-89754?
A vulnerability has been identified in the Linux kernel's memory management subsystem, specifically relating to improper handling during the page walk process. If the page middle directory (PMD) entry is cleared while the walk operation is retried, it may lead to erroneous states, causing walk callbacks to be invoked multiple times. This behavior can produce an out-of-bounds write, revealing potential security risks if exploited. The issue necessitates careful scrutiny of memory operations and addressing conditions that could trigger such replication of callbacks.
Affected Version(s)
Linux 38ec58670a0c5fc1edabdeccd857e586b7b3f318 < 895cd4ecbb2e03d7583103c65ee5adaae126ed6d
Linux 3b89863c3fa482912911cd65a12a3aeef662c250
Linux 3b89863c3fa482912911cd65a12a3aeef662c250