CVE-2026-64226 is a vulnerability in Linux Kernel
Published on July 24, 2026
sched_ext: Avoid UAF in scx_root_enable_workfn() init failure path
In the Linux kernel, the following vulnerability has been resolved:
sched_ext: Avoid UAF in scx_root_enable_workfn() init failure path
In scx_root_enable_workfn(), put_task_struct(p) is called before scx_error()
dereferences p->comm and p->pid. If the iterator's reference is the last
drop, the task is freed synchronously and the deref becomes a UAF.
Move put_task_struct() past scx_error().
Products Associated with CVE-2026-64226
Want to know whenever a new CVE is published for Linux Kernel? stack.watch will email you.
Affected Versions
Linux:- Version f0e1a0643a59bf1f922fa209cec86a170b784f3f and below cf396941901858b0de426cdcd3974eea6a02c98c is affected.
- Version f0e1a0643a59bf1f922fa209cec86a170b784f3f and below 45c7c4e3db8b700307313c035ea08be829a7f21b is affected.
- Version f0e1a0643a59bf1f922fa209cec86a170b784f3f and below 57e19ba3f58a67eb924022a5a60b67fd08e5cbbd is affected.
- Version f0e1a0643a59bf1f922fa209cec86a170b784f3f and below 9a415cc53711f2238e0f0ca8a6bcc796c003b127 is affected.
- Version 6.12 is affected.
- Before 6.12 is unaffected.
- Version 6.12.92, <= 6.12.* is unaffected.
- Version 6.18.34, <= 6.18.* is unaffected.
- Version 7.0.11, <= 7.0.* is unaffected.
- Version 7.1, <= * is unaffected.