๐Ÿ” CVE Alert

CVE-2026-64297

UNKNOWN 0.0

module: decompress: check return value of module_extend_max_pages()

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: module: decompress: check return value of module_extend_max_pages() module_extend_max_pages() calls kvrealloc() internally and returns -ENOMEM on allocation failure. The return value is never checked. If the initial allocation fails, info->pages remains NULL and info->max_pages remains 0. Subsequent calls to module_get_next_page() will attempt to dynamically grow the array by calling module_extend_max_pages(info, 0) since info->used_pages is 0. This results in kvrealloc(NULL, 0) returning ZERO_SIZE_PTR, which is treated as a success, leading to a dereference of ZERO_SIZE_PTR and a kernel oops. Fix: add the missing error check after module_extend_max_pages() and return immediately on failure. This matches the pattern used by every other kvrealloc() caller in the module loading path. [Sami: Corrected the analysis in the commit message.]

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Jul 25, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
b1ae6dc41eaaa98bb75671e0f3665bfda248c3e7 < e7f174715f9f0cbcb9e87b52e4fc4ef149baac98 b1ae6dc41eaaa98bb75671e0f3665bfda248c3e7 < afcc0515bbdd28d509a2b5870faaa89b137f5d53 b1ae6dc41eaaa98bb75671e0f3665bfda248c3e7 < 168072baf9ad516d5a06046514c7fea4c0671990 b1ae6dc41eaaa98bb75671e0f3665bfda248c3e7 < a82e170637e050a803b4f37542371ef216bf66d2 b1ae6dc41eaaa98bb75671e0f3665bfda248c3e7 < e7da02659c229f73492fb1ed87ceda4090153aaa b1ae6dc41eaaa98bb75671e0f3665bfda248c3e7 < 786d2d84416a9a1c1a47b71a68d679d886284be2
Linux / Linux
5.17

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/e7f174715f9f0cbcb9e87b52e4fc4ef149baac98 git.kernel.org: https://git.kernel.org/stable/c/afcc0515bbdd28d509a2b5870faaa89b137f5d53 git.kernel.org: https://git.kernel.org/stable/c/168072baf9ad516d5a06046514c7fea4c0671990 git.kernel.org: https://git.kernel.org/stable/c/a82e170637e050a803b4f37542371ef216bf66d2 git.kernel.org: https://git.kernel.org/stable/c/e7da02659c229f73492fb1ed87ceda4090153aaa git.kernel.org: https://git.kernel.org/stable/c/786d2d84416a9a1c1a47b71a68d679d886284be2