PatchSiren cyber security CVE debrief
CVE-2026-74472 Linux CVE debrief
The Linux kernel vulnerability CVE-2026-74472 was resolved by resetting kernel-owned dev_info fields in ublk_ctrl_add_dev(). The vulnerability allowed a device to be added with an incorrect state, causing issues with disk detachment and char device read/write paths. This issue was caused by the ublk_ctrl_add_dev() function failing to reset kernel-owned dev_info fields. Affected Linux kernel developers and administrators should review and apply the patch to prevent potential issues. The vulnerability was introduced in the Linux kernel's ublk_ctrl_add_dev() function, which failed to reset kernel-owned dev_info fields. This caused issues with device state and disk detachment. The vulnerability was resolved by resetting the kernel-owned dev_info fields in ublk_ctrl_add_dev(). To verify, defenders should review the patch and check for potential issues with char device read/write paths. Additionally, they should monitor for device state and disk detachment issues in the Linux kernel. The patch fixes the issue by ensuring that kernel-owned dev_info fields are properly reset, preventing incorrect device states and associated problems.
- Vendor
- Linux
- Product
- Unknown
- CVSS
- Unknown
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-08-15
- Original CVE updated
- 2026-08-15
- Advisory published
- 2026-08-15
- Advisory updated
- 2026-08-15
Who should care
Linux kernel developers, administrators who use the Linux kernel, and security teams responsible for vulnerability management and patching should be aware of this vulnerability and take necessary actions to mitigate it. They should review the patch and verify device state and disk detachment in the Linux kernel. Additionally, they should monitor for potential issues with char device read/write paths and review compensating controls for exposed systems.
Technical summary
The Linux kernel vulnerability CVE-2026-74472 was caused by the ublk_ctrl_add_dev() function failing to reset kernel-owned dev_info fields. This allowed a device to be added with an incorrect state, causing issues with disk detachment and char device read/write paths. The vulnerability was resolved by resetting the kernel-owned dev_info fields in ublk_ctrl_add_dev(). Affected Linux kernel developers and administrators should review and apply the patch to prevent potential issues.
Defensive priority
Medium
Recommended defensive actions
- Review and apply the patch to reset kernel-owned dev_info fields in ublk_ctrl_add_dev()
- Verify device state and disk detachment in the Linux kernel
- Monitor for potential issues with char device read/write paths
- Review compensating controls for exposed systems while remediation is scheduled and verified
- Check relevant monitoring, detection, and logs for exposed assets that need extra review
- Track exceptions, retest remediated assets, and close the item only after evidence is documented
- Confirm whether affected product deployments exist in managed environments and assign an owner for follow-up
Evidence notes
The vulnerability was introduced in the Linux kernel's ublk_ctrl_add_dev() function, which failed to reset kernel-owned dev_info fields. This caused issues with device state and disk detachment. The vulnerability was resolved by resetting the kernel-owned dev_info fields in ublk_ctrl_add_dev(). To verify, defenders should review the patch and check for potential issues with char device read/write paths. Additionally, they should monitor for device state and disk detachment issues in the Linux kernel.
Official resources
-
CVE-2026-74472 CVE record
CVE.org
-
CVE-2026-74472 NVD detail
NVD
-
Source item URL
nvd_modified
-
Source reference
416baaa9-dc9f-4396-8d5f-8c081fb06d67
-
Source reference
416baaa9-dc9f-4396-8d5f-8c081fb06d67
-
Source reference
416baaa9-dc9f-4396-8d5f-8c081fb06d67
-
Source reference
416baaa9-dc9f-4396-8d5f-8c081fb06d67
-
Source reference
416baaa9-dc9f-4396-8d5f-8c081fb06d67
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-08-15T13:17:51.953Z and has not been modified since then.