Mismatched Memory Management Routines in Linux kernel - CVE-2026-98024
Published: September 28, 2026
Vulnerability details
The vulnerability allows a local user to cause slab allocator corruption.
The vulnerability exists due to incorrect memory deallocation in ism_alloc_dmb() when handling an error after allocating dmb->cpu_addr with folio_alloc(). A local user can trigger the error exit to cause slab allocator corruption.
The dmb->cpu_addr pointer may be used by future callers after the associated folio has been released.