CVE-2026-80729

Source
https://cve.org/CVERecord?id=CVE-2026-80729
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80729.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-80729
Downstream
Published
2026-09-03T08:21:47.722Z
Modified
2026-09-05T03:48:34.696576865Z
Summary
mm/huge_memory: initialise workingset state before folio split
Details

In the Linux kernel, the following vulnerability has been resolved:

mm/huge_memory: initialise workingset state before folio split

xastrysplit() adds __GFPACCOUNT for page-cache xanodes, but _foliosplit() leaves the xastate's xalru unset. That lets a live, memcg-charged xanode exist without being linked into the mapping's shadownodes listlru; when reclaim later walks the listlru it trips VMWARNON(!cssisdying()).

Use mappingsetupdate() to install both the workingset update callback and the shadownodes listlru on the xa_state.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80729.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
58729c04cf1092b87aeef0bf0998c9e2e4771133
Fixed
d858f7c9fc514f1d9d3be7d00b2dd4e2f2383b55
Fixed
aca1f2d5de17e138bc6c4859126b77e516b82541

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80729.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.15.0
Fixed
7.1.9

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80729.json"