Review reviewCritical

CVE-2026-64033

Linux

In the Linux kernel, the following vulnerability has been resolved: RDMA/rtrs: Fix use-after-free in path file creation cleanup In the error path of rtrs_srv_create_path_files(), the sysfs root folders may already have been created and srv_path->kobj may already have been initialized. If a later step fails, the cleanup currently calls kobject_put(&srv_path->kobj) before rtrs_srv_destroy_once_sysfs_root_folders(srv_path). kobject_put() may drop the last reference to srv_path->kobj and invoke the release callback, rtrs_srv_release(), which frees srv_path. The following call to rtrs_srv_destro...

CVSS
9.8
EPSS
-
- percentile
CISA KEV
Not listed
Published
2026.07.20
PRIORITY ASSESSMENT

Review review

The CVSS severity warrants an early asset and exposure review.

Known exploitationNot established by KEV
Exploit probability-
Technical severityCVSS 9.8

Vulnerability overview

In the Linux kernel, the following vulnerability has been resolved: RDMA/rtrs: Fix use-after-free in path file creation cleanup In the error path of rtrs_srv_create_path_files(), the sysfs root folders may already have been created and srv_path->kobj may already have been initialized. If a later step fails, the cleanup currently calls kobject_put(&srv_path->kobj) before rtrs_srv_destroy_once_sysfs_root_folders(srv_path). kobject_put() may drop the last reference to srv_path->kobj and invoke the release callback, rtrs_srv_release(), which frees srv_path. The following call to rtrs_srv_destro...

Affected product and versions

Product
Linux
Affected versions
>= bab17b761c8974a869b04462be5d4dd9aad366b4 < 01e42aabaf7632beb4bf235c7238b96c746d4144, >= ae4c81644e9105d9f7f713bb0d444737bb6a0cf1 < 548f3956e53a7f7bde912d8129010b8986d5e602, >= ae4c81644e9105d9f7f713bb0d444737bb6a0cf1 < 00904a73272b9f3ef3952fe69a833909dccad1ef, >= ae4c81644e9105d9f7f713bb0d444737bb6a0cf1 < 92060ab1c5115674cf319175550f85f68405121f, >= ae4c81644e9105d9f7f713bb0d444737bb6a0cf1 < eae62c5451e67e8b033c1681fd3b85d7e9a9a28f, >= ae4c81644e9105d9f7f713bb0d444737bb6a0cf1 < b0e9706fb2859064bb6c677554c4d20c713aa8e0, >= ae4c81644e9105d9f7f713bb0d444737bb6a0cf1 < 5b74373390113fba798a76b483837029ab010fef, >= 5.15.61 < 5.15.209, >= 5.17
Fixed versions
No verified fixed-version field is available yet

Recommended response sequence

Confirm exposure before applying a vendor-supported change.

Full remediation guide
  1. 1
    Identify

    Confirm that Linux and an affected version are present.

  2. 2
    Prioritize

    Combine exploitation signals with asset exposure and business criticality.

  3. 3
    Remediate

    Follow the vendor advisory or supported update path and preserve rollback options.

  4. 4
    Verify

    Recheck the version, service health, access paths, and relevant logs.

Technical data

CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE
Not available
CVE-2026-64033 — Linux | SECUFOCUS NOW