---
id: CVE-2026-89760
title: >-
  kernel: mm, swap: don't free a hibernation slot that is in the swap cache
  (CVE-2026-89760)
summary: >-
  A flaw was found in the Linux kernel's memory management (mm) and swap
  subsystem. This vulnerability occurs when the swap_free_hibernation_slot()
  function incorrectly frees a hibernation slot while a memory page (folio) is
  still present in…
severity: high
cvss: 7
cvssVector: 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H'
cvssSource: vendor
cwe: CWE-825
vendor: Red Hat
product: Red Hat Enterprise Linux 6
affected:
  - enterprise_linux 6
published: '2026-09-11'
updated: '2026-09-15'
sourceUpdated: '2026-09-15T19:56:07+00:00'
source: CSAF
sourceUrl: 'https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89760.json'
references:
  - url: >-
      https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89760.json
  - url: 'https://access.redhat.com/security/cve/CVE-2026-89760'
  - url: 'https://bugzilla.redhat.com/show_bug.cgi?id=2532145'
  - url: 'https://www.cve.org/CVERecord?id=CVE-2026-89760'
  - url: 'https://nvd.nist.gov/vuln/detail/CVE-2026-89760'
  - url: >-
      https://git.kernel.org/pub/scm/linux/security/vulns.git/plain/cve/published/2026/CVE-2026-89760.mbox
  - url: 'https://git.kernel.org/stable/c/10d9012e83efedde8718ceaa5053f836e0c8596c'
  - url: 'https://git.kernel.org/stable/c/a6df73156f2d85746c69adbf13d0f5ea200e0626'
tags:
  - csaf
  - vex
  - red-hat
  - cve.org
  - score-dispute
epss: 0.00112
epssPercentile: 0.01557
scores:
  vendor: 5.7
  cna: 7.8
ingestedAt: '2026-09-14T15:23:07.472Z'
---

## Overview

A flaw was found in the Linux kernel's memory management (mm) and swap subsystem. This vulnerability occurs when the swap_free_hibernation_slot() function incorrectly frees a hibernation slot while a memory page (folio) is still present in the swap cache. This can lead to silent memory corruption, process crashes, or data instability across unrelated user applications, typically during the preparation of a hibernation image by uswsusp.

## Vendor advisories

- **Red Hat VEX** · Moderate · affected: Red Hat Enterprise Linux 6 · no fix planned: Red Hat Enterprise Linux 6 · updated 2026-09-15 · [vex](https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-89760.json)

**kernel: mm, swap: don't free a hibernation slot that is in the swap cache** — rated Moderate by Red Hat. Released 2026-09-11, updated 2026-09-15.

Affected:

- Red Hat Enterprise Linux 6

No fix planned:

- Red Hat Enterprise Linux 6

Not affected:

- Red Hat Enterprise Linux 10
- Red Hat Enterprise Linux 7
- Red Hat Enterprise Linux 8
- Red Hat Enterprise Linux 9
- Red Hat OpenShift Container Platform 4

## Remediation

Out of support scope
