Incorrect calculation in Linux kernel - CVE-2026-98373
Published: October 8, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to incorrect destination address calculation in move_hugetlb_page_tables() when skipping a source page table that is absent initially or after unsharing a PMD table. A local user can invoke mremap() with source and destination addresses at different offsets within their page tables to cause a denial of service.