Linux Kernel Workqueue Memory Reclamation Vulnerability

Vulnerability

A vulnerability in the Linux kernel's memory reclamation process has been addressed. The issue arose because the 'kvfree_rcu()' APIs were using a system workqueue that did not support memory reclamation, leading to kernel warnings about flushing non-reclamation events. This vulnerability could cause improper handling of scheduled work, potentially leading to memory management issues.

Impact

The vulnerability could disrupt the proper flushing of work scheduled in the kernel, particularly in the context of memory reclamation, which could lead to memory management problems.

Remediation

Users can update to the latest version of the Linux kernel where this vulnerability has been addressed. Instructions for updating the kernel can be found in the official Linux kernel documentation.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
0.6
exploitability
4.0
remediation
0.0
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.