Overview: CVE-2026-23219 describes a vulnerability in the Linux kernel related to memory management (mm/slab). Specifically, when CONFIG_MEM_ALLOC_PROFILING_DEBUG is enabled, a warning can be triggered because the alloc_tag is not properly cleared during certain memory allocation failure scenarios within the memcg_alloc_abort_single function. This issue affects the Linux kernel. Severity: The vulnerability's severity is low, as indicated by its lack of a CVSS score and a low FAUCET Risk Score of 20/100. It appears to be a debugging-related issue that manifests as a warning rather than a direct security exploit. There is no information suggesting a direct attack vector or complex exploitation, and the potential impact seems limited to system instability or diagnostic noise when the specific debug configuration is active. Exploitation Status: There is no evidence of active exploitation for CVE-2026-23219. No exploit code is available on platforms like Metasploit, Nuclei, or ExploitDB. Furthermore, the vulnerability has garnered no community discussion or media coverage, suggesting a low level of attention and perceived threat.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 6.10, < 6.12.70CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 6.13, < 6.18.10CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
6.19CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:6.19:rc1:*:*:*:*:*:* | ||
6.19CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:6.19:rc2:*:*:*:*:*:* | ||
6.19CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:6.19:rc3:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.