Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CVE-2026-74379

Published Aug 15, 2026 EPSS 0.17% (7th pctl)

Overview

CVE-2026-74379 is a known-severity vulnerability. It was published on August 15, 2026.

Technical Description

In the Linux kernel, the following vulnerability has been resolved:

dax/kmem: account for partial discontiguous resource upon removal

When dev_dax_kmem_probe() partially succeeds (at least one range is

mapped) but a subsequent range fails request_mem_region() or

add_memory_driver_managed(), the probe silently continues, ultimately

returning success, but with the corresponding range resource NULL'ed out.

dev_dax_kmem_remove() iterates over all dax_device ranges regardless of if

the underlying resource exists. When remove_memory() is called later, it

returns 0 because the memory was never added which causes

dev_dax_kmem_remove() to incorrectly assume the (nonexistent) resource can

be removed and attempts cleanup on a NULL pointer.

Fix this by skipping these ranges altogether, noting that these cases are

considered success, such that the cleanup is still reached when all

actually-added ranges are successfully removed.

Remediation

Check the references section for vendor advisories, patches, and mitigation guidance. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

Frequently Asked Questions

What is CVE-2026-74379?

CVE-2026-74379 is a known-severity vulnerability. It was published on August 15, 2026.

How severe is CVE-2026-74379?

CVSS score information is not yet available for this vulnerability. Check back as the CVE record is updated by NVD analysts.

How do I fix or remediate CVE-2026-74379?

Check the references section for vendor advisories, patches, and mitigation guidance. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

How can CyberStrike help with CVE-2026-74379?

CyberStrike's AI-powered security agents can automatically detect CVE-2026-74379 across your infrastructure using autonomous pentesting, DAST scanning, and HackBrowser. The platform continuously monitors for known vulnerabilities and provides actionable remediation guidance prioritized by real-world exploitability.