CVE-2026-74602

Source
https://cve.org/CVERecord?id=CVE-2026-74602
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74602.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-74602
Downstream
Published
2026-08-22T15:31:50.811Z
Modified
2026-08-24T11:47:08.639947931Z
Summary
ring-buffer: Initialise reader page order in rb_allocate_cpu_buffer()
Details

In the Linux kernel, the following vulnerability has been resolved:

ring-buffer: Initialise reader page order in rballocatecpu_buffer()

In rballocatecpubuffer(), bpage->order was omitted, leaving it as 0. This is an issue for a ring-buffer with subbufs bigger than PAGESIZE if when freed: freebufferpage() relies on this value. Align the value with the actual allocation size (buffer::subbuf_order).

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/74xxx/CVE-2026-74602.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
f9b94daa542a8d2532f0930f01cd9aec2d19621b
Fixed
7c620d89bae1a926ab7d626600285d3516c9f3c4
Fixed
2e37f2bf111429fbfa4d985b12df3ba496ca70aa
Fixed
3b3e0a6ee5bb3ac000f135beef26b2b7ed1a771a
Fixed
6d014e44b68ddd43f71288d2a4dbb1a259869149

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74602.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.8.0
Fixed
6.12.105
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.45
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.9

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74602.json"