CVE-2026-68185

Updated on 10 Aug 2026

Severity

Awaiting Analysis

Details

Overview

About vulnerability

In the Linux kernel, the following vulnerability has been resolved:

LoongArch: Move jump_label_init() before parse_early_param()

When enabling both CONFIG_MEM_ALLOC_PROFILING=y and CONFIG_MEM_ALLOC_PROFILING_ENABLED_BY_DEFAULT=y, then diabling memory profiling by adding the boot parameter ‘sysctl.vm.mem_profiling=0’ will cause the kernel failed to boot.

After analysis, this is because jump_label_init() must be called before parse_early_param(), the early param handlers may modify static keys by static_branch_enable/disable().

Fix this by moving jump_label_init() to before parse_early_param(). The solution is similar to other architectures.

Details

Affected product:
Debian 10 ELS
Affected packages:
linux @ 4.19.0

Fixes