{"id":"CVE-2026-72015","summary":"fs/resctrl: Fix double-add of pseudo-locked region's RMID to free list","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nfs/resctrl: Fix double-add of pseudo-locked region's RMID to free list\n\nA pseudo-locked group's RMID is freed when it is created. On unmount\nrmdir_all_sub() unconditionally frees all RMID of all groups, resulting\nin a double-free of the pseudo-locked group's RMID. The consequence of this\nis that the original free results in the pseudo-locked group's RMID being\nadded to the rmid_free_lru linked list and the second free then attempts\nto add the same RMID entry to the rmid_free_lru again.\n\nDo not double-free a pseudo-locked group's RMID.","modified":"2026-08-25T03:51:43.563453525Z","published":"2026-08-15T05:51:43.390Z","database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72015.json"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/52007bfdce5310e8c8a29849bfbfb188a1e50ca0"},{"type":"WEB","url":"https://git.kernel.org/stable/c/52b769165f20b38092f28ce064b4b143471540a7"},{"type":"WEB","url":"https://git.kernel.org/stable/c/9168176894332312c12ef052e784735dbf4ffe3f"},{"type":"WEB","url":"https://git.kernel.org/stable/c/ad12e70d7dc3c94a05efc61d1e4861078e0e162b"},{"type":"WEB","url":"https://git.kernel.org/stable/c/b2fe9e140aa94b2816aab7ebc692b543e418f5e3"},{"type":"WEB","url":"https://git.kernel.org/stable/c/b9f089723aee892efc77c349ae47a6b452b293c4"},{"type":"WEB","url":"https://git.kernel.org/stable/c/bab7dbba38ed3011972c3d9be2dcdca7575cbe32"},{"type":"WEB","url":"https://git.kernel.org/stable/c/f7628eea9212e185a09df3aea603ca8580b8678d"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72015.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-72015"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"e0bdfe8e36f3fbbdc91e70bf927f743ca23917b0"},{"fixed":"bab7dbba38ed3011972c3d9be2dcdca7575cbe32"},{"fixed":"ad12e70d7dc3c94a05efc61d1e4861078e0e162b"},{"fixed":"52b769165f20b38092f28ce064b4b143471540a7"},{"fixed":"9168176894332312c12ef052e784735dbf4ffe3f"},{"fixed":"b2fe9e140aa94b2816aab7ebc692b543e418f5e3"},{"fixed":"52007bfdce5310e8c8a29849bfbfb188a1e50ca0"},{"fixed":"f7628eea9212e185a09df3aea603ca8580b8678d"},{"fixed":"b9f089723aee892efc77c349ae47a6b452b293c4"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72015.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"4.19.0"},{"fixed":"5.10.266"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.217"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.1.184"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.148"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.12.101"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"6.18.40"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.19.0"},{"fixed":"7.1.5"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72015.json"}}],"schema_version":"1.9.0"}