Use-after-free in Linux kernel - CVE-2026-93075
Published: September 18, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to use-after-free in FS-DAX page-map operations when handling a memory failure after a static device is unbound from FS-DAX. A local user can trigger a memory failure after FS-DAX is detached to cause a denial of service.
The condition can occur if the device is rebound to device_dax or the fsdev_dax module is unloaded.