CVE-2026-74644 PUBLISHED

mm/damon/ops-common: putback folios on invalid migrate nid

Assigner: Linux
Reserved: 15.08.2026 Published: 22.08.2026 Updated: 22.08.2026

In the Linux kernel, the following vulnerability has been resolved:

mm/damon/ops-common: putback folios on invalid migrate nid

damon_pa_migrate() and damos_va_migrate() isolate folios into a local list and then call damon_migrate_pages(). When target_nid is invalid (including the scheme default NUMA_NO_NODE / -1), damon_migrate_pages() returns early without putting the folios back to the LRU.

Callers then discard the list head while those folios remain isolated with an extra reference taken by folio_isolate_lru(). The pages stay off the LRU for as long as the mapping exists (anon active+inactive counts drop while RSS does not), and the leftover references can pin the pages after the mapping is gone.

Put the folios back on the invalid-nid path so ignored migration requests still return them to the LRU.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 7e6c3130690a01076efdf45aa02ba5d5c16849a0 to 460181e4bb47a57776c64f0832c2096de8878cb3 (excl.)
  • affected from 7e6c3130690a01076efdf45aa02ba5d5c16849a0 to cfef454862b7d2776e0955b873dd59af6b47cfcb (excl.)
  • affected from 7e6c3130690a01076efdf45aa02ba5d5c16849a0 to 5deb65c34e682e7c5f5df417a70e223e8fcc5f5a (excl.)
  • Version 7c303fa1f311aadc17fa82b7bbf776412adf45de is affected
  • Version 9d0c2d15aff96746f99a7c97221bb8ce5b62db19 is affected
  • affected from 6.12.44 to 6.13 (excl.)
  • affected from 6.16.4 to 6.17 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 6.17 is affected
  • unaffected from 0 to 6.17 (excl.)
  • unaffected from 6.18.45 to 6.18.* (incl.)
  • unaffected from 7.1.9 to 7.1.* (incl.)
  • unaffected from 7.2 to * (incl.)

References