CVE-2026-64182

Source
https://cve.org/CVERecord?id=CVE-2026-64182
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-64182.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-64182
Downstream
Published
2026-07-19T15:41:05.186Z
Modified
2026-07-21T03:47:06.095275940Z
Summary
drivers/base/memory: fix memory block reference leak in poison accounting
Details

In the Linux kernel, the following vulnerability has been resolved:

drivers/base/memory: fix memory block reference leak in poison accounting

memblknrpoisoninc() and memblknrpoisonsub() look up a memory block via findmemoryblockbyid(), which acquires a reference to the memory block device.

Both helpers use the returned memory block without dropping that reference, leaking the device reference on each successful lookup. Drop the reference after updating nr_hwpoison.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/64xxx/CVE-2026-64182.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
5033091de814ab4b5623faed2755f3064e19e2d2
Fixed
686b4283f82cd630fafd7ca9b03dfc080b3ec8fa
Fixed
ce60d9452a0f2effa72fd20ea270c59ca691d455
Fixed
24840b3139d7415144b81e4f9f4c44670d15bed9
Fixed
8502e2c2d0633f99d94d22ae8dabc10caae1fc2a
Fixed
03a2cc1756a0570f887d624cd6c535ea0cbd4951

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-64182.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.142
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.92
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.34
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.0.11

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-64182.json"