VulnerabilityReceived
CVE-2026-74327
In the Linux kernel, the following vulnerability has been resolved: vmalloc: fix NULL pointer dereference in is_vm_area_hugepages() find_vm_area() can return NULL if the given address is not a valid vmalloc area.
UnscoredEPSS 0.17%
Does this matter?
Not yet scored. NVD analysis is pending; check back once CVSS and EPSS values are published.
Description
In the Linux kernel, the following vulnerability has been resolved: vmalloc: fix NULL pointer dereference in is_vm_area_hugepages() find_vm_area() can return NULL if the given address is not a valid vmalloc area. Check the return value before dereferencing it to avoid a kernel crash.
- CVSS
- Not yet scored
- EPSS
- 0.17% probability · 7th percentile
- CISA KEV
- Not listed
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/55a44f5259e6a5f1d5b11cb0e19e943c9cc62280
- https://git.kernel.org/stable/c/a1bca6b69bd934e2731d009e645038e05d57ce59
- https://git.kernel.org/stable/c/af71c2b88ccae44418e273bdfe0c96be8515151e
- https://git.kernel.org/stable/c/b86f98e53df4f5d57259817b8e9a00167b78bae6
- https://git.kernel.org/stable/c/bbd664b7c77f6488cd5652231c0fe01d069a73ea
- https://git.kernel.org/stable/c/c55dd3b46c1208d6d2ea737a8aefef4aa4c70cb8
- https://git.kernel.org/stable/c/c741485fa09bf5900f76d95424d86316d0a00331
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.