CVE-2026-64244 Details
Description
In the Linux kernel, the following vulnerability has been resolved: drivers/base/memory: set mem->altmap after successful device registration If __add_memory_block() fails at xa_store() (under memory pressure for example), device_unregister() is called, which eventually triggers memory_block_release() with mem->altmap still set, causing a WARN_ON(mem->altmap). This was triggered by modifying virtio-mem driver. Fix this by delaying the assignment of mem->altmap until after __add_memory_block() has succeeded.
A vulnerability in the Linux kernel's memory management system has been addressed. The issue arose in the device registration process, specifically within the 'virtio-mem' driver. When the function '__add_memory_block()' failed due to memory pressure, it triggered a device unregistration. This, in turn, called 'memory_block_release()' while the memory's alternative map ('altmap') was still set, leading to a warning. The vulnerability has been fixed by postponing the assignment of 'altmap' until after the memory block has been successfully added.
Users can apply the latest patches available in the Linux kernel stable tree to address this vulnerability.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://git.kernel.org/stable/c/059ac6252a63edf1cea79bf30bd860a8c264b62c | kernel.org | Patch |
| https://git.kernel.org/stable/c/22dc0d042f02ce82aa61422ea5f232628bfd9e9c | kernel.org | Patch |
| https://git.kernel.org/stable/c/6c25bf4e44a2b6a14332f952bba0974521f5b72d | kernel.org | Patch |
| https://git.kernel.org/stable/c/802e113cf120df7208e4c7e604950a85e87120a8 | kernel.org | Patch |
| https://git.kernel.org/stable/c/a2b8d7827f48ee54a686cb80e4a1d0ff954ec42a | kernel.org | Patch |
| https://git.kernel.org/stable/c/bc3dd82a0ffd488bb902f4c69c3d28fd4088d973 | kernel.org | Patch |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| NVD-CWE-noinfo | Insufficient Information to Classify Weakness | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| linux linux kernel | >= 6.6, < 6.6.144 >= 6.7, < 6.12.95 >= 6.13, < 6.18.37 >= 6.19, < 7.0.14 >= 7.1, < 7.1.2 |
CPE
Remediation
| |
Change History
3 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Aug 17, 2026 | Initial Analysis | [email protected] |
| Aug 17, 2026 | CVE Modified | kernel.org |
| Jul 24, 2026 | New CVE Received | kernel.org |