PT-2026-64687 · Linux+1 · Linux Kernel+1

CVE-2026-64466

·

Published

2026-07-25

·

Updated

2026-09-07

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the rust binder component where freeze listeners are not automatically cleared when a node is removed. While userspace is expected to clear these listeners before the node reference count reaches zero, the lack of enforcement allows listeners to persist in the freeze listeners rbtree and the remote node's freeze listener list. This behavior can result in a memory leak caused by a refcount cycle, which occurs when two or more objects reference each other, preventing the system from reclaiming the memory.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-64466
OPENSUSE-SU-2026:11476-1
USN-8726-1
USN-8727-1
USN-8728-1

Affected Products

Linux Kernel
Ubuntu