Use-after-free in Linux kernel - CVE-2026-74481
Published: August 16, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a use-after-free in page_reporting_process and virtballoon_free_page_report when page reporting work continues during power management freeze while virtqueues are being deleted. A local user can trigger suspend or hibernation activity while freed pages are being reported to access deleted virtqueues and cause a denial of service.
The issue can be reached during S3 suspend or S4 hibernation, including cases where memory reclamation returns pages to the buddy allocator during image saving.
Affected software
Debian Linux
linux (Debian package)
How to mitigate CVE-2026-74481
linux (Debian package) - update to 6.12.105-1
External References
- https://git.kernel.org/stable/c/0b45f6927a14914ff685fe0e6f9d11232a1e03df
- https://git.kernel.org/stable/c/450f35f4d5a682a0796757e52295df58ddb63bc9
- https://git.kernel.org/stable/c/b11907c905fa08eda925395f0724b7a409870f65
- https://git.kernel.org/stable/c/f978048326570047e8216e81a67f9c71ef2bb1b1
- https://git.kernel.org/stable/c/faf439b5fa7b231120eac4f7a617e0bfd4f6f5c7