CVE-2026-64350
In the Linux kernel, the following vulnerability has been resolved: usb: cdnsp: fix stream context array leak in cdnsp_alloc_stream_info() cdnsp_alloc_stream_info() allocates stream_info->stream_ctx_array with cdnsp_alloc_stream_ctx(). If a later stream ring allocation or stream mapping update fails, the error path frees the allocated stream rings and stream_rings array, but leaves stream_ctx_array allocated. Free the stream context array before falling through to the stream_rings cleanup path.
Schwachstellenklasse
In the Linux kernel, the following vulnerability has been resolved: usb: cdnsp: fix stream context array leak in cdnsp_alloc_stream_info() cdnsp_alloc_stream_info() allocates stream_info->stream_ctx_array with cdnsp_alloc_stream_ctx(). If a later stream ring allocation or stream mapping update fails, the error path frees the allocated stream rings and stream_rings array, but leaves stream_ctx_array allocated. Free the stream context array before falling through to the stream_rings cleanup path.
Betroffene Produkte
- linux linux_kernel
Quellen
- https://git.kernel.org/stable/c/3348f444a4ce43dd5c2d1aa41634cb6eff33aa64
- https://git.kernel.org/stable/c/37283f5a47127fbdea567749a2110766af53d18d
- https://git.kernel.org/stable/c/963075c4da0cd43b3d17b107c355e1eb0ee64a58
- https://git.kernel.org/stable/c/c00826e87bb75e14e0381b05da5f18ffd0241ab6
- https://git.kernel.org/stable/c/cb8e9391b7f4f77d112c51910cd7c355a337ef76
- https://git.kernel.org/stable/c/d9643bbe93a6aee24edee1a86e0303aa74bcd320
Finden Sie die Schwachstelle, bevor es ein Angreifer tut.
Melden Sie sich mit GitHub an und starten Sie Ihr erstes Audit in weniger als einer Minute. Für den kostenlosen Plan ist keine Kreditkarte nötig.