{"id":"CVE-2026-68345","summary":"arm_mpam: guard MBWU state before adding it to garbage","details":"In the Linux kernel, the following vulnerability has been resolved:\n\narm_mpam: guard MBWU state before adding it to garbage\n\n__destroy_component_cfg() adds each RIS mbwu_state object to the MPAM\ngarbage list when destroying component configuration.\n\nHowever, mbwu_state is allocated per RIS and only for RISes with MBWU\nmonitors. A component can therefore have comp-\u003ecfg allocated while some\nRISes still have ris-\u003embwu_state set to NULL.\n\nPassing a NULL mbwu_state to add_to_garbage() dereferences the NULL\npointer inside the macro.\n\nSkip RISes that do not have an mbwu_state object before adding them to\nthe garbage list.","modified":"2026-08-18T03:30:50.658212490Z","published":"2026-08-10T12:03:22.098Z","database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68345.json","cna_assigner":"Linux"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/977f52909c624210178a1247fab0b02b110c1106"},{"type":"WEB","url":"https://git.kernel.org/stable/c/ca1f96334267ab8d47b2c9d535cdc9920fdde269"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68345.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-68345"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"41e8a14950e1732af51cfec8fa09f8ded02a5ca9"},{"fixed":"ca1f96334267ab8d47b2c9d535cdc9920fdde269"},{"fixed":"977f52909c624210178a1247fab0b02b110c1106"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68345.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"6.19.0"},{"fixed":"7.1.6"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68345.json"}}],"schema_version":"1.9.0"}