-

CVE-2026-64466

rust_binder: clear freeze listener on node removal

In the Linux kernel, the following vulnerability has been resolved:

rust_binder: clear freeze listener on node removal

Generally userspace is supposed to explicitly clear freeze listeners
before they drop the refcount on the node ref to zero, but there's
nothing forcing that. Currently, in this scenario the freeze listener
remains in the freeze_listeners rbtree and in the remote node's freeze
listener list, even though the ref for which the listener is registered
is gone. This could potentially lead to a memory leak due to a refcount
cycle. Thus, remove the freeze listener in this scenario.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version eafedbc7c050c44744fbdf80bdf3315e860b7513
Version < 91b27f8172cdbf265240104772fd042a461a7767
Status affected
Version eafedbc7c050c44744fbdf80bdf3315e860b7513
Version < 0644da3621ddd8e146280675a2a31d1e06634a1d
Status affected
Version eafedbc7c050c44744fbdf80bdf3315e860b7513
Version < bc4a9828897871ff3e5a1f8a1d346decbf4ee95e
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 6.18
Status affected
Version 0
Version < 6.18
Status unaffected
Version <= 6.18.*
Version 6.18.39
Status unaffected
Version <= 7.1.*
Version 7.1.4
Status unaffected
Version <= *
Version 7.2
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.17% 0.07
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/91b27f8172cdbf265240104772fd042a461a7767
https://git.kernel.org/stable/c/0644da3621ddd8e146280675a2a31d1e06634a1d
https://git.kernel.org/stable/c/bc4a9828897871ff3e5a1f8a1d346decbf4ee95e