CVE-2026-74637 evidence review
Linux
In the Linux kernel, the following vulnerability has been resolved: perf/core: Fix group leader use-after-free after sibling detach perf_group_detach() handles leader and sibling detach differently. When the group leader is detached, all siblings are promoted to singleton events and their group_leader pointer is reset to themselves. When a sibling is detached, it is removed from the leader's sibling_list, but its group_leader pointer is left pointing at the old leader. That is harmless when the sibling is being closed and freed immediately, as in the DETACH_DEAD path. It is not safe when th...
This record remains available for product and version identification, but it is not presented as a complete remediation procedure. Confirm the affected range and the supported fix in a direct vendor advisory before changing production systems.
Identify the product and installed version
Record whether Linux is present, where it is installed, and which interfaces are exposed.
- Record the product name, package or appliance identifier, and installed version.
- Identify internet-facing, administrative, API, and internal access paths.
- Preserve the pre-change configuration and relevant service logs.
Compare the affected range
Use the current record as an identification aid: >= 8a49542c0554af7d0073aac0ee73ee65b807ef34 < 8f867c0e8da4c2303d91adf45acb6b1820966c27, >= 8a49542c0554af7d0073aac0ee73ee65b807ef34 < 8e92e03984364d93e0d5b0acd81c95eca773f034, >= 8a49542c0554af7d0073aac0ee73ee65b807ef34 < f8a07021679aadfb6d63b209207ccc41f26982d1, >= 8a49542c0554af7d0073aac0ee73ee65b807ef34 < 80c6054a4c40a0ffad82acef9f9a0dee108d152a, >= 8a49542c0554af7d0073aac0ee73ee65b807ef34 < b42948f9e0d1ea4dbd5742ce1dfc7688de5d4a35, >= 8a49542c0554af7d0073aac0ee73ee65b807ef34 < a979a642402d0b1f856c7a729b4cb2d92de4cf2f, >= 8a49542c0554af7d0073aac0ee73ee65b807ef34 < 1e7abfeb23c12bf46f6457e4a3e1a1a300d50619, >= 8a49542c0554af7d0073aac0ee73ee65b807ef34 < 42c5ca1f0a288a52878bd72a5595b08261057438, >= e732ebc42aea321ee84514330eb3a675307fcc83, >= 2.6.34.14 < 2.6.35, >= 2.6.35. Resolve incomplete inventory results before deciding that an asset is unaffected.
Verify the authoritative remediation source
Open the linked source material and locate a direct vendor advisory for this CVE. Confirm the supported fixed release and product-specific update path before making a production change.
Operational boundary
This page does not replace the vendor advisory, support contract, change-management process, or recovery plan. Do not infer that an asset is unaffected from an incomplete inventory query or a missing fixed-version field.