CVE-2026-64184
Published Jul 19, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs-schemes: call missing mem_cgroup_iter_break() damon_sysfs_memcg_path_to_id() breaks mem_cgroup_iter() loop without calling mem_cgroup_iter_break(). This leaks the cgroup reference. Fix the issue by calling mem_cgroup_iter_break() before the break. The issue was discovered [1] by Sashiko.
Is your site exposed to CVE-2026-64184?
Run a free security scan — no signup, results in seconds.
References
Other References
https://git.kernel.org/stable/c/082351f9d40007414ad6af062b3a26fa02fd4b5f
https://git.kernel.org/stable/c/1bd31386ec3b9ccec10c04429948a306ec5897c0
https://git.kernel.org/stable/c/302e02f9ba49f81418ec2a749ae6f5cac1d424e9
https://git.kernel.org/stable/c/30a361be33f3793b9ecbd10ab7be6d0564819b79
https://git.kernel.org/stable/c/d4e7b5c4cc353f154d5ab8bb2e1ce7714d77a6e9
Frequently Asked Questions
What is CVE-2026-64184? +
In the Linux kernel, the following vulnerability has been resolved:
mm/damon/sysfs-schemes: call missing mem_cgroup_iter_break()
damon_sysfs_memcg_path_to_id() breaks mem_cgroup_iter() loop without
calling mem_cgroup_iter_break(). This leaks the cgroup reference. Fix
the issue by calling mem_cgroup_iter_break() before the break.
The issue was discovered [1] by Sashiko.
How do I check if I'm vulnerable to CVE-2026-64184? +
You can use Secably's free Website Scanner to check your website for known vulnerabilities. For infrastructure scanning, use the Port Scanner to identify exposed services that may be affected. Check the vendor advisories linked above for specific patch and version information.