Vulnerability intelligence
CVE-2026-64582
Linux Linux
In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix a use-after-free problem in rxe_mmap rxe_mmap() removes a rxe_mmap_info struct from the pending_mmaps list and releases pending_lock while the struct's kref is still at 1: list_del_init(&ip->pending_mmaps); spin_unlock_bh(&rxe->pending_lock); / ref == 1, no lock held / ret = remap_vmalloc_range(vma, ip->obj, 0); / walks PTEs / [...] rxe_vma_open(vma); / kref_get, ref → 2 / remap_vmalloc_range_partial() walks PTEs without any lock.
CVSS Score
7.8
High
EPSS — Exploit Probability
0.1%
Riskier than 2% of all CVEs · checked 2026-09-27
Exploitation
Not in CISA KEV
KEV does not include every exploited vulnerability
Remediation
unknown
Check vendor advisories
1 article across 1 outlet · first covered Aug 14, 2026 · latest Aug 14, 2026
Coverage timeline
-
Linux Kernel RDMA Bug Allows Local Users to Gain Rootsecurityonline.info · Aug 14, 2026