-
CVE-2026-74273
- EPSS 0.16%
- Veröffentlicht 15.08.2026 05:57:46
- Zuletzt bearbeitet 17.08.2026 06:19:21
- CVE-Watchlists
- Unerledigt
cxl/region: Block region delete during region creation
In the Linux kernel, the following vulnerability has been resolved: cxl/region: Block region delete during region creation Expand the range lock, rename it "regions_lock", to disable region deletion in the critical period between construct_region() and attach_target(), as well as the period between device_add() and registering the remove actions. Otherwise, userspace can confuse the kernel. It can violate the assumption the region stays registered through the completion of cxl_add_to_region(). It can violate the assumption that devm_add_action_or_reset() is working with a live 'struct cxl_region'. It is ok for the region to disappear outside of those windows as that mirrors device hotplug flows where the proper locks are held.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version
a32320b71f085f8d82afedcf285f1682c8c00aed
Version <
b0b6a9c65cb72c901fdcc6ae83d7afd70cdca1b8
Status
affected
Version
a32320b71f085f8d82afedcf285f1682c8c00aed
Version <
d91feb88692e81b00cd22f0125cfcd04970b4a0b
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
6.3
Status
affected
Version
0
Version <
6.3
Status
unaffected
Version <=
7.1.*
Version
7.1.5
Status
unaffected
Version <=
*
Version
7.2
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.16% | 0.052 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|
https://git.kernel.org/stable/c/b0b6a9c65cb72c901fdcc6ae83d7afd70cdca1b8
https://git.kernel.org/stable/c/d91feb88692e81b00cd22f0125cfcd04970b4a0b