Home

Description

In the Linux kernel, the following vulnerability has been resolved: mm/zone_device: do not touch device folio after calling ->folio_free() The contents of a device folio can immediately change after calling ->folio_free(), as the folio may be reallocated by a driver with a different order. Instead of touching the folio again to extract the pgmap, use the local stack variable when calling percpu_ref_put_many().

PUBLISHED Reserved 2026-05-13 | Published 2026-06-08 | Updated 2026-06-08 | Assigner Linux

Product status

Default status
unaffected

d245f9b4ab806733a77e51a218ca7b8bc3135cd9 (git) before 85be0a262e39c706edb53c88af8afde2e98222ba
affected

d245f9b4ab806733a77e51a218ca7b8bc3135cd9 (git) before 39928984956037cabd304321cb8f342e47421db5
affected

Default status
affected

6.19
affected

Any version before 6.19
unaffected

7.0.4 (semver)
unaffected

7.1-rc1 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/85be0a262e39c706edb53c88af8afde2e98222ba

git.kernel.org/...c/39928984956037cabd304321cb8f342e47421db5

cve.org (CVE-2026-46277)

nvd.nist.gov (CVE-2026-46277)

Download JSON