๐Ÿ” CVE Alert

CVE-2026-74352

UNKNOWN 0.0

of: reserved_mem: avoid post-init UAF when alloc_reserved_mem_array() fails

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: of: reserved_mem: avoid post-init UAF when alloc_reserved_mem_array() fails The global pointer 'reserved_mem' continues to reference the reserved_mem_array which lives in __initdata if alloc_reserved_mem_array() fails. of_reserved_mem_lookup() is exported for post-init use, that would dereference freed memory and trigger a use-after-free. So reset reserved_mem_count to 0 when alloc_reserved_mem_array() fails.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 15, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
b6ae53301eb41f0f59f83c161248b186bca7da70 < 6d28e6ad3c5c9248577f21057baa9bf16fa9ef3b 00c9a452a235c61f099504783badd9a7675ff5a5 < 9af58d10d0d8c08b822de5fc99e61f31a87ede8d 00c9a452a235c61f099504783badd9a7675ff5a5 < cbd3102fe27bc87da244bf4c3ba670ea4698b0a8 00c9a452a235c61f099504783badd9a7675ff5a5 < e1686ca81dbf3edbde589b7daf312b45cbf76e03
Linux / Linux
6.13

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/6d28e6ad3c5c9248577f21057baa9bf16fa9ef3b git.kernel.org: https://git.kernel.org/stable/c/9af58d10d0d8c08b822de5fc99e61f31a87ede8d git.kernel.org: https://git.kernel.org/stable/c/cbd3102fe27bc87da244bf4c3ba670ea4698b0a8 git.kernel.org: https://git.kernel.org/stable/c/e1686ca81dbf3edbde589b7daf312b45cbf76e03