PT-2026-43961 · Linux · Linux Kernel

Published

2026-05-27

·

Updated

2026-06-04

·

CVE-2026-46093

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A race condition exists in the Linux kernel within the decay va pool node() function. This function can be invoked concurrently by purge vmap area lazy() during pool purging and by the shrinker via vmap node shrink scan(). Because the shrinker path lacks proper serialization, concurrent execution can lead to races and potential memory leaks.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-46093
OPENSUSE-SU-2026:10954-1

Affected Products

Linux Kernel