Linux Kernel Device Folio Management Vulnerability in Zone Device Memory Handling

Vulnerability

A vulnerability has been identified in the Linux kernel's handling of device folios within the zone device memory management. After a device folio is freed, its contents can be quickly altered by a driver, potentially leading to inconsistencies. The vulnerability arises because the kernel code may attempt to access the folio again to retrieve the page map, not accounting for the possibility that the folio has been reallocated. This issue affects the Linux kernel stable tree.

Impact

The vulnerability could lead to improper management of device folios, potentially causing memory inconsistencies or corruption.

Remediation

Users can apply the latest patches available in the Linux kernel stable tree to address this vulnerability.

Added: Jun 8, 2026, 6:05 PM
Updated: Jun 8, 2026, 6:05 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
0.6
exploitability
3.5
remediation
7.7
relevance
9.2
threat
3.2
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.