CVE-2026-74327

Source
https://cve.org/CVERecord?id=CVE-2026-74327
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74327.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-74327
Downstream
Published
2026-08-15T05:58:21.665Z
Modified
2026-08-16T03:48:54.952406808Z
Summary
vmalloc: fix NULL pointer dereference in is_vm_area_hugepages()
Details

In the Linux kernel, the following vulnerability has been resolved:

vmalloc: fix NULL pointer dereference in isvmarea_hugepages()

findvmarea() can return NULL if the given address is not a valid vmalloc area. Check the return value before dereferencing it to avoid a kernel crash.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/74xxx/CVE-2026-74327.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
121e6f3258fe393e22c36f61a319be8a4f2c05ae
Fixed
c741485fa09bf5900f76d95424d86316d0a00331
Fixed
b86f98e53df4f5d57259817b8e9a00167b78bae6
Fixed
af71c2b88ccae44418e273bdfe0c96be8515151e
Fixed
a1bca6b69bd934e2731d009e645038e05d57ce59
Fixed
bbd664b7c77f6488cd5652231c0fe01d069a73ea
Fixed
55a44f5259e6a5f1d5b11cb0e19e943c9cc62280
Fixed
c55dd3b46c1208d6d2ea737a8aefef4aa4c70cb8

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74327.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.13.0
Fixed
5.15.212
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.178
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.145
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.97
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74327.json"