Out-of-bounds read in Linux kernel - CVE-2026-64477
Published: July 27, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to an out-of-bounds access in the resctrl RMID reader and limbo handler when offlining a monitoring domain with SNC enabled. A local user can trigger CPU offlining for a monitoring domain with an empty cpu_mask to cause a denial of service.
The issue occurs when LLC occupancy is tracked and the monitoring domain is going offline, causing a NUMA node lookup to be performed with nr_cpu_ids.