Missing Release of Resource after Effective Lifetime in Linux kernel - CVE-2026-64466
Published: July 27, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper resource management in the rust binder freeze listener handling when dropping the last reference to a node without clearing its freeze listener. A local user can drop the node reference while leaving a stale freeze listener registered to cause a denial of service.
The issue can leave the listener in both the freeze_listeners rbtree and the remote node's freeze listener list, potentially creating a refcount cycle that results in a memory leak.