Instituto Nacional de ciberseguridad. Sección Incibe
Instituto Nacional de Ciberseguridad. Sección INCIBE-CERT

CVE-2026-64118

Gravedad CVSS v3.1:
ALTA
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
19/07/2026
Última modificación:
20/07/2026

Descripción

*** Pendiente de traducción *** In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> qed: fix double free in qed_cxt_tables_alloc()<br /> <br /> If one of the later PF or VF CID bitmap allocations fails,<br /> qed_cid_map_alloc() jumps to cid_map_fail and frees the previously<br /> allocated CID bitmaps before returning an error. qed_cxt_tables_alloc()<br /> then calls qed_cxt_mngr_free(), which invokes qed_cid_map_free()<br /> again.<br /> <br /> Fix this by setting each CID bitmap pointer to NULL after bitmap_free()<br /> to avoid double free.<br /> <br /> The bug was first flagged by an experimental analysis tool we are<br /> developing for kernel memory-management bugs while analyzing<br /> v6.13-rc1. The tool is still under development and is not yet publicly<br /> available. Manual inspection confirms that the bug is still<br /> present in v7.1-rc3.<br /> <br /> Runtime reproduction was not attempted because exercising the failing<br /> allocation path requires device-specific setup.