PatchSiren cyber security CVE debrief
CVE-2026-64374 Linux CVE debrief
A live lock issue was found in the Linux kernel's RT_PUSH_IPI logic when running on non-PREEMPT_RT systems. This could cause high latency and system slowdowns under heavy workloads with softirqs and RT tasks. The issue arises from the RT_PUSH_IPI logic, which was created to help PREEMPT_RT but could cause problems on non-PREEMPT_RT systems. The fix involves making RT_PUSH_IPI default off for non-PREEMPT_RT systems. This change helps prevent potential system slowdowns and latency issues in Linux kernel deployments, especially those with high-traffic or real-time systems.
- Vendor
- Linux
- Product
- Unknown
- CVSS
- HIGH 7.5
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-07-25
- Original CVE updated
- 2026-09-08
- Advisory published
- 2026-07-25
- Advisory updated
- 2026-09-08
Who should care
Defenders responsible for Linux kernel deployments, especially those with high-traffic or real-time systems, should assess exposure and prioritize patching vulnerable versions to prevent potential system slowdowns and latency issues.
Why it matters
CVE-2026-64374 is a Linux kernel vulnerability that causes a live lock issue on non-PREEMPT_RT systems, leading to high latency and system slowdowns. Defenders should prioritize patching vulnerable versions to prevent potential issues.
- System slowdowns and high latency under heavy workloads
- Potential for live lock issues on non-PREEMPT_RT systems
- Need for patching vulnerable Linux kernel versions to prevent issues
Technical summary
The Linux kernel vulnerability CVE-2026-64374 causes a live lock issue on non-PREEMPT_RT systems due to the RT_PUSH_IPI logic. This results in high latency and system slowdowns under heavy workloads with softirqs and RT tasks. The fix involves making RT_PUSH_IPI default off for non-PREEMPT_RT systems. The vulnerability affects Linux kernel deployments, especially those with high-traffic or real-time systems. Defenders should prioritize patching vulnerable versions to prevent potential system slowdowns and latency issues.
Defensive priority
Defenders should prioritize patching vulnerable Linux kernel versions to prevent potential system slowdowns and latency issues.
Recommended defensive actions
- Patch vulnerable Linux kernel versions
- Inventory and assess exposure of Linux kernel deployments
- Monitor system performance for latency and slowdown issues
- Review compensating controls for exposed systems while remediation is scheduled and verified
- Check relevant monitoring, detection, and logs for exposed assets that need extra review
- Track exceptions, retest remediated assets, and close the item only after evidence is documented
- Confirm whether affected product deployments exist in managed environments and assign an owner for follow-up
Evidence notes
The issue arises from the RT_PUSH_IPI logic, which was created to help PREEMPT_RT but could cause problems on non-PREEMPT_RT systems. The fix involves making RT_PUSH_IPI default off for non-PREEMPT_RT systems.
Sources and references
Verified primary and authoritative sources
-
CVE-2026-64374 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2026-64374
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2026-64374 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2026-64374
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
Source reference
Unverified legacy reference
URL: https://git.kernel.org/stable/c/44aae426dbfd51286f7eb601cfa14bc32164812a
416baaa9-dc9f-4396-8d5f-8c081fb06d67 - Patch
-
Source reference
Unverified legacy reference
URL: https://git.kernel.org/stable/c/4bd0da48fbc1dbef6774175129107fbbdd353e26
416baaa9-dc9f-4396-8d5f-8c081fb06d67 - Patch
-
Source reference
Unverified legacy reference
URL: https://git.kernel.org/stable/c/860aaff72c8446fed5e576249e19952883a18885
416baaa9-dc9f-4396-8d5f-8c081fb06d67 - Patch
-
Source reference
Unverified legacy reference
URL: https://git.kernel.org/stable/c/89237c8fc15d8016a194076e648ccb57d75e65ae
416baaa9-dc9f-4396-8d5f-8c081fb06d67 - Patch
-
Source reference
Unverified legacy reference
URL: https://git.kernel.org/stable/c/a18f80bf5359238c4f067d691b96af00286fdd89
416baaa9-dc9f-4396-8d5f-8c081fb06d67 - Patch
-
Source reference
Unverified legacy reference
URL: https://git.kernel.org/stable/c/b99f04ae3d200d2f8844aa29145bd18eccbeecde
416baaa9-dc9f-4396-8d5f-8c081fb06d67 - Patch
-
Source reference
Unverified legacy reference
URL: https://git.kernel.org/stable/c/d8312a56d9a162e3ec76476aa487e7d20bc602e9
416baaa9-dc9f-4396-8d5f-8c081fb06d67 - Patch
-
Source reference
Unverified legacy reference
URL: https://git.kernel.org/stable/c/dd29c017aed628076e915fe4cdfb5392fd4c5cab
416baaa9-dc9f-4396-8d5f-8c081fb06d67 - Patch
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.