CVE-2026-89502

Source
https://cve.org/CVERecord?id=CVE-2026-89502
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89502.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-89502
Downstream
Published
2026-09-11T19:43:50Z
Modified
2026-09-13T03:47:18Z
Summary
ring-buffer: Free cpu_buffer::free_page with subbuf_order
Details

In the Linux kernel, the following vulnerability has been resolved:

ring-buffer: Free cpu_buffer::free_page with subbuf_order

When sub-buffers use an order greater than 0, cpu_buffer->free_page is allocated with subbuf_order. Use the correct order for cpu_buffer->free_page.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/89xxx/CVE-2026-89502.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
f9b94daa542a8d2532f0930f01cd9aec2d19621b
Fixed
77275ccea06eaf297e8e6ac3fc830cb72086379a
Fixed
8c1ecdcdea738efe0494af908f12c0ae3a97fffa
Fixed
81063bbb16c4fcf0136c9117d5e49d3621dd6a1e
Fixed
234b1a72e9706fe20c08c96f4374ec8e83b934cb

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89502.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.8.0
Fixed
6.12.109
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.50
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89502.json"