๐Ÿ” CVE Alert

CVE-2026-64372

UNKNOWN 0.0

cpufreq: pcc: fix use-after-free and double free in _OSC evaluation

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: cpufreq: pcc: fix use-after-free and double free in _OSC evaluation pcc_cpufreq_do_osc() calls acpi_evaluate_object() twice for the two-phase _OSC negotiation. Between the two calls it freed output.pointer but left output.length unchanged. Since acpi_evaluate_object() treats a non-zero length with a non-NULL pointer as an existing buffer to write into, the second call wrote into freed memory (use-after-free). The subsequent kfree(output.pointer) at out_free then freed the same pointer a second time (double free). Reset output.pointer to NULL and output.length to ACPI_ALLOCATE_BUFFER after freeing the first result, so ACPICA allocates a fresh buffer for each phase independently.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Jul 25, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
0f1d683fb35d6c6f49ef696c95757f3970682a0e < 8e454e9d0bc03446d610ee49abec9dfd424f6541 0f1d683fb35d6c6f49ef696c95757f3970682a0e < 632666a63116d8061c62a988d1ca39dcd6d27c9b 0f1d683fb35d6c6f49ef696c95757f3970682a0e < 5cdb25f144b101083d8bf3fd023ad87fbe6850d7 0f1d683fb35d6c6f49ef696c95757f3970682a0e < 982c9f92d57bda2b769851ff6d90d43dcf5f3734 0f1d683fb35d6c6f49ef696c95757f3970682a0e < a36ca93a8ba57464e521d70a337d37f069064111 0f1d683fb35d6c6f49ef696c95757f3970682a0e < 6ba6f6783be2ffeb2cbcdc9321c4b9f708f796f7 0f1d683fb35d6c6f49ef696c95757f3970682a0e < 0e3c739a2f6fc1de5b19a8839ab80696b9cb2a29 0f1d683fb35d6c6f49ef696c95757f3970682a0e < 266d3dd8b757b48a576e90f018b51f7b7563cc32
Linux / Linux
2.6.34

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/8e454e9d0bc03446d610ee49abec9dfd424f6541 git.kernel.org: https://git.kernel.org/stable/c/632666a63116d8061c62a988d1ca39dcd6d27c9b git.kernel.org: https://git.kernel.org/stable/c/5cdb25f144b101083d8bf3fd023ad87fbe6850d7 git.kernel.org: https://git.kernel.org/stable/c/982c9f92d57bda2b769851ff6d90d43dcf5f3734 git.kernel.org: https://git.kernel.org/stable/c/a36ca93a8ba57464e521d70a337d37f069064111 git.kernel.org: https://git.kernel.org/stable/c/6ba6f6783be2ffeb2cbcdc9321c4b9f708f796f7 git.kernel.org: https://git.kernel.org/stable/c/0e3c739a2f6fc1de5b19a8839ab80696b9cb2a29 git.kernel.org: https://git.kernel.org/stable/c/266d3dd8b757b48a576e90f018b51f7b7563cc32