{"id":"CVE-2026-89760","title":"kernel: mm, swap: don't free a hibernation slot that is in the swap cache (CVE-2026-89760)","summary":"A flaw was found in the Linux kernel's memory management (mm) and swap subsystem. This vulnerability occurs when the swap_free_hibernation_slot() function incorrectly frees a hibernation slot while a memory page (folio) is still present in…","severity":"high","cvss":7,"cvssVector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","cvssSource":"vendor","cwe":"CWE-825","vendor":"Red Hat","product":"Red Hat Enterprise Linux 6","affected":["enterprise_linux 6"],"published":"2026-09-11","updated":"2026-09-15","sourceUpdated":"2026-09-15T19:56:07+00:00","source":"CSAF","sourceUrl":"https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89760.json","references":[{"url":"https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89760.json"},{"url":"https://access.redhat.com/security/cve/CVE-2026-89760"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2532145"},{"url":"https://www.cve.org/CVERecord?id=CVE-2026-89760"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-89760"},{"url":"https://git.kernel.org/pub/scm/linux/security/vulns.git/plain/cve/published/2026/CVE-2026-89760.mbox"},{"url":"https://git.kernel.org/stable/c/10d9012e83efedde8718ceaa5053f836e0c8596c"},{"url":"https://git.kernel.org/stable/c/a6df73156f2d85746c69adbf13d0f5ea200e0626"}],"tags":["csaf","vex","red-hat","cve.org","score-dispute"],"epss":0.00112,"epssPercentile":0.01558,"scores":{"vendor":5.7,"cna":7.8},"ingestedAt":"2026-09-14T15:23:07.472Z","slug":"CVE-2026-89760","body":"## Overview\n\nA flaw was found in the Linux kernel's memory management (mm) and swap subsystem. This vulnerability occurs when the swap_free_hibernation_slot() function incorrectly frees a hibernation slot while a memory page (folio) is still present in the swap cache. This can lead to silent memory corruption, process crashes, or data instability across unrelated user applications, typically during the preparation of a hibernation image by uswsusp.\n\n## Vendor advisories\n\n- **Red Hat VEX** · Moderate · affected: Red Hat Enterprise Linux 6 · no fix planned: Red Hat Enterprise Linux 6 · updated 2026-09-15 · [vex](https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89760.json)\n\n**kernel: mm, swap: don't free a hibernation slot that is in the swap cache** — rated Moderate by Red Hat. Released 2026-09-11, updated 2026-09-15.\n\nAffected:\n\n- Red Hat Enterprise Linux 6\n\nNo fix planned:\n\n- Red Hat Enterprise Linux 6\n\nNot affected:\n\n- Red Hat Enterprise Linux 10\n- Red Hat Enterprise Linux 7\n- Red Hat Enterprise Linux 8\n- Red Hat Enterprise Linux 9\n- Red Hat OpenShift Container Platform 4\n\n## Remediation\n\nOut of support scope","depth":"twilight","depthScore":39,"depthScoreParts":{"impact":38.5,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[{"seq":205521,"id":"CVE-2026-89760","ts":1789576723216,"field":"cvss","old":"5.7","new":"7"},{"seq":205520,"id":"CVE-2026-89760","ts":1789576723216,"field":"severity","old":"medium","new":"high"},{"seq":202956,"id":"CVE-2026-89760","ts":1789403733106,"field":"cvss","old":"7.8","new":"5.7"},{"seq":202955,"id":"CVE-2026-89760","ts":1789403733106,"field":"severity","old":"high","new":"medium"},{"seq":197660,"id":"CVE-2026-89760","ts":1789384318290,"field":"cvss","old":"5.7","new":"7.8"},{"seq":197659,"id":"CVE-2026-89760","ts":1789384318290,"field":"severity","old":"medium","new":"high"},{"seq":183645,"id":"CVE-2026-89760","ts":1789356676239,"field":"cvss","old":"7.8","new":"5.7"},{"seq":183644,"id":"CVE-2026-89760","ts":1789356676239,"field":"severity","old":"high","new":"medium"},{"seq":153646,"id":"CVE-2026-89760","ts":1789285351706,"field":"cvss","old":null,"new":"7.8"},{"seq":153645,"id":"CVE-2026-89760","ts":1789285351706,"field":"severity","old":"none","new":"high"},{"seq":147672,"id":"CVE-2026-89760","ts":1789270211826,"field":"cvss","old":null,"new":"5.7"},{"seq":147671,"id":"CVE-2026-89760","ts":1789270211826,"field":"severity","old":"none","new":"medium"},{"seq":109428,"id":"CVE-2026-89760","ts":1789183731877,"field":"cvss","old":null,"new":"5.7"},{"seq":109427,"id":"CVE-2026-89760","ts":1789183731877,"field":"severity","old":"none","new":"medium"}]}