CVE-2026-74592
In the Linux kernel, the following vulnerability has been resolved: ima: Instantiate file_truncate and path_truncate hooks Instantiate the file_truncate and path_truncate LSM hooks to reset the action cache flags (IMA_DONE_MASK) as soon as truncation is requested, so the file, based on policy, is re-collected, re-measured, re-audited, and re-appraised on next access.
Affected versions
Fixed in
6.12.104,
6.18.45,
7.1.9,
7.2
and their respective stable series.
References
4 totalFrequently asked questions
-
What is CVE-2026-74592?
CVE-2026-74592 is a unscored severity Linux kernel vulnerability . CVE-2026-74592 has not been confirmed as actively exploited and is not listed in the CISA KEV catalog.
-
Is there a patch available for CVE-2026-74592?
Yes. CVE-2026-74592 has been patched. Fixed versions include 6.12.104, 6.18.45, 7.1.9 and others.
-
Is CVE-2026-74592 actively exploited?
No. CVE-2026-74592 has not been confirmed as actively exploited. It is not listed in the CISA Known Exploited Vulnerabilities (KEV) catalog.