-

CVE-2026-89717

zram: set default primary compressor in zram_destroy_comps()

In the Linux kernel, the following vulnerability has been resolved:

zram: set default primary compressor in zram_destroy_comps()

Patch series "zram: fix zram issues reported by sashiko".

Sashiko drove by and reported [1] a couple of zram issues:
a possible BUG_ON() in zlib code due to missing winbits range
validation and one possible NULL-ptr dereference in zcomp.
Both are low risk yet still worth fixing.


This patch (of 2):

zram_destroy_comps() resets all compressors and leaves them set to NULL,
including the primary one, which is invalid device state, as now
comp_algorithm_show()->strcmp() can be called on a NULL compressor.  Set
default primary compressor in zram_destroy_comps().
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 486fd58af7ac1098b68370b1d4d9f94a2a1c7124
Version < 4bf3328eeec9afc2a55632ff47fc18101ea62d73
Status affected
Version 486fd58af7ac1098b68370b1d4d9f94a2a1c7124
Version < 5cec3e60e9f2d1324179df3aa91656f90095cf8f
Status affected
Version 486fd58af7ac1098b68370b1d4d9f94a2a1c7124
Version < dea8f13c3dfad8b990f8ea96c997aabeebbc1d22
Status affected
Version 486fd58af7ac1098b68370b1d4d9f94a2a1c7124
Version < dde75313eed0b014c437f48dd75c0308b592cbf9
Status affected
Version 6e20720b12299595154857fa98222729f0d5823c
Status affected
Version c4e5683c3031a33dc46954e99d37cbd2f706cdb6
Status affected
Version 6.6.57
Version < 6.7
Status affected
Version 6.11.4
Version < 6.12
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.12
Status affected
Version 0
Version < 6.12
Status unaffected
Version <= 6.12.*
Version 6.12.111
Status unaffected
Version <= 6.18.*
Version 6.18.51
Status unaffected
Version <= 7.2.*
Version 7.2.4
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.17% 0.061
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/5cec3e60e9f2d1324179df3aa91656f90095cf8f
https://git.kernel.org/stable/c/dea8f13c3dfad8b990f8ea96c997aabeebbc1d22
https://git.kernel.org/stable/c/dde75313eed0b014c437f48dd75c0308b592cbf9
https://git.kernel.org/stable/c/4bf3328eeec9afc2a55632ff47fc18101ea62d73