Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-96045.json
JSON Data
https://api.osv.dev/v1/vulns/AZL-96045
Upstream
Published
2026-08-15T06:22:42Z
Modified
2026-08-29T05:27:27Z
Summary
CVE-2026-74405 affecting package kernel 6.6.150.1-1
Details

In the Linux kernel, the following vulnerability has been resolved:

OPP: Fix race between OPP addition and lookup

A race exists between devpmoppadddynamic() and devpmoppfindfreq_exact():

CPU0 (add) CPU1 (lookup) ------------------------------- ------------------------------ oppadd() mutexlock() listadd(&newopp->node, head) mutexunlock() opptablefindkey() mutexlock() devpmoppget(opp) krefget() mutexunlock() krefinit(&newopp->kref) devpmoppput() krefput_mutex()

The newly added OPP is inserted into the list before its kref is initialized. A concurrent lookup can find this OPP and increment its reference count while it is still uninitialized, leading to refcount corruption and a potential premature free.

Fix this by initializing ->kref and ->opptable before making the OPP visible via listadd(). This ensures any concurrent lookup observes a fully initialized object.

[ Viresh: Updated commit log ]

References

Affected packages

Azure Linux:3 / kernel

Package

Name
kernel
Purl
pkg:rpm/azure-linux/kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Last affected
6.6.150.1-1

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-96045.json"