Memory Management Vulnerability in Linux Kernel Affects Multiple Regions
CVE-2026-90004
Currently unrated
What is CVE-2026-90004?
A vulnerability exists in the Linux kernel's memory management where the damon_apply_min_nr_regions function can fail during region splitting due to memory allocation issues. This could potentially lead to invalid memory dereference and corruption. The incident arises if the last region cannot be split as expected, possibly resulting in a violation of the minimum number of regions defined by the user. Although the occurrence is rare and considered temporary, the implications of a failure can result in significant operational challenges.
Affected Version(s)
Linux b1029f29eb1d5fbf07fa8db9b5e7ab6d9813ad67 < 463ebd63e8ee3d73022a18915ea43320dad8aad7
Linux b1029f29eb1d5fbf07fa8db9b5e7ab6d9813ad67
Linux 7.1