CVE-2026-74602

Unknown

Last modified

CVE-2026-74602 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Initialise reader page order in rb_allocate_cpu_buffer() In rb_allocate_cpu_buffer(), bpage->order was omitted, leaving it as 0. This is an issue for a ring-buffer with subbufs bigger than PAGE_SIZE if when freed: free_buffer_page() relies on this value. Align the value with the actual allocation size (buffer::subbuf_order)..

Description

In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Initialise reader page order in rb_allocate_cpu_buffer() In rb_allocate_cpu_buffer(), bpage->order was omitted, leaving it as 0. This is an issue for a ring-buffer with subbufs bigger than PAGE_SIZE if when freed: free_buffer_page() relies on this value. Align the value with the actual allocation size (buffer::subbuf_order).

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= f9b94daa542a8d2532f0930f01cd9aec2d19621b, < 7c620d89bae1a926ab7d626600285d3516c9f3c4; >= f9b94daa542a8d2532f0930f01cd9aec2d19621b, < 2e37f2bf111429fbfa4d985b12df3ba496ca70aa; >= f9b94daa542a8d2532f0930f01cd9aec2d19621b, < 3b3e0a6ee5bb3ac000f135beef26b2b7ed1a771a; >= f9b94daa542a8d2532f0930f01cd9aec2d19621b, < 6d014e44b68ddd43f71288d2a4dbb1a259869149
LinuxLinux6.8

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-74602?
In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Initialise reader page order in rb_allocate_cpu_buffer() In rb_allocate_cpu_buffer(), bpage->order was omitted, leaving it as 0. This is an issue for a ring-buffer with subbufs bigger than PAGE_SIZE if when freed: free_buffer_page() relies on this value. Align the value with the actual allocation size (buffer::subbuf_order).
How severe is CVE-2026-74602?
Severity scoring for CVE-2026-74602 is pending analysis.
How do I fix CVE-2026-74602?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-74602?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST