CVE-2026-46020
Description
A flaw was found in the Linux kernel's DAMON (Data Access MONitor) core. A privileged local user can exploit this vulnerability by providing an invalid node ID to damos_quota_goal->nid for node_mem_{used,free}_bp via the DAMON user-space tool. This improper validation can lead to an out-of-bounds memory access, potentially causing a kernel NULL pointer dereference and system instability.
Understanding the Weakness (CWE)
Other
Technical Impact: Varies by Context
Frequently Asked Questions
Not sure what something means? Check out our Security Glossary.
Want to get errata notifications? Sign up here.