CVE-2026-74721Patch

LOWCVSS 7.8 · HIGH

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

In the Linux kernel, the following vulnerability has been resolved: accel/amxdna: Fix page-insertion errors in amdxdna_insert_pages() Two error paths in amdxdna_insert_pages() called vma->vm_ops->close(vma) before returning an error code to the caller. This is incorrect: amdxdna_gem_obj_mmap() registers an HMM interval notifier before calling amdxdna_insert_pages(), and on a hard error it jumps to hmm_unreg to undo that registration. Calling vm_ops->close() manually — which drops the shmem pages_pin_count and the GEM object reference that backs the VMA — before the mmap syscall has even returned causes those resources to be released while the VMA is still alive. The kernel VMA teardown will call vm_ops->close() a second time when the process later unmaps the range, producing a reference count underflow. Replace both hard-error returns with a deferred-fault approach that keeps the VMA alive and retries page insertion through the HMM range-fault path.

0.5/ 10 priority

Sources & remediation

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 3 signals
  • General: 1 classified signal
  • 3 total mentions across 1 day

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-08-22: 3Patch / Workaround · 2026-08-22: 2Technical Details · 2026-08-22: 308-22
Signal classification2 categories
Patch
266.7%
General
133.3%
Referenced assets3 URLs
Full discourse3 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-74721 Linux Kernel Refcount Underflow in amdxdna_insert_pages() https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-74721

    Post summary

    The post lists CVE‑2026‑74721 as a refcount underflow in the Linux kernel’s amdxdna_insert_pages() function, pointing to an external details page but offering no PoC, exploit, or mitigation information.

    00011163
    4.1K followersView on X
  • Infoflowcloud@infoflowcloud
    Patch

    🚨*CVE* CVE-2026-74721 In the Linux kernel, the following vulnerability has been resolved: accel/amxdna: Fix page-insertion errors in amdxdna_insert_pages() Two error paths in amdxdna_ins… https://www.cve.org/CVERecord?id=CVE-2026-74721 ----- Traducción: CVE-2026-74721 En … http://infoflow.cloud`

    Post summary

    The post announces that CVE‑2026‑74721, a page‑insertion error in the Linux kernel’s amdxdna module, has been resolved and links to the CVE record, with no evidence of a PoC, exploit, or active misuse.

    0000040
    102 followersView on X
  • CVE@CVEnew
    Patch

    CVE-2026-74721 In the Linux kernel, the following vulnerability has been resolved: accel/amxdna: Fix page-insertion errors in amdxdna_insert_pages() Two error paths in amdxdna_ins… https://www.cve.org/CVERecord?id=CVE-2026-74721

    Post summary

    The Linux kernel has addressed CVE-2026-74721 by fixing page‑insertion errors in amdxdna_insert_pages, resolving two involved error paths.

    00000942
    58.0K followersView on X

Explore more