-
CVE-2026-23031
- EPSS 0.02%
- Veröffentlicht 31.01.2026 11:42:09
- Zuletzt bearbeitet 18.04.2026 09:16:13
- Quelle 416baaa9-dc9f-4396-8d5f-8c081f
- CVE-Watchlists
- Unerledigt
can: gs_usb: gs_usb_receive_bulk_callback(): fix URB memory leak
In the Linux kernel, the following vulnerability has been resolved: can: gs_usb: gs_usb_receive_bulk_callback(): fix URB memory leak In gs_can_open(), the URBs for USB-in transfers are allocated, added to the parent->rx_submitted anchor and submitted. In the complete callback gs_usb_receive_bulk_callback(), the URB is processed and resubmitted. In gs_can_close() the URBs are freed by calling usb_kill_anchored_urbs(parent->rx_submitted). However, this does not take into account that the USB framework unanchors the URB before the complete function is called. This means that once an in-URB has been completed, it is no longer anchored and is ultimately not released in gs_can_close(). Fix the memory leak by anchoring the URB in the gs_usb_receive_bulk_callback() to the parent->rx_submitted anchor.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version
d08e973a77d128b25e01a08c34d89593fdf222da
Version <
9c151898cc259a7784be60ba38664f42ede39b31
Status
affected
Version
d08e973a77d128b25e01a08c34d89593fdf222da
Version <
ec5ccc2af9e5b045671f3f604b57512feda8bcc5
Status
affected
Version
d08e973a77d128b25e01a08c34d89593fdf222da
Version <
f905bcfa971edb89e398c98957838d8c6381c0c7
Status
affected
Version
d08e973a77d128b25e01a08c34d89593fdf222da
Version <
08624b7206ddb9148eeffc2384ebda2c47b6d1e9
Status
affected
Version
d08e973a77d128b25e01a08c34d89593fdf222da
Version <
9f669a38ca70839229b7ba0f851820850a2fe1f7
Status
affected
Version
d08e973a77d128b25e01a08c34d89593fdf222da
Version <
7352e1d5932a0e777e39fa4b619801191f57e603
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
3.16
Status
affected
Version
0
Version <
3.16
Status
unaffected
Version <=
5.15.*
Version
5.15.203
Status
unaffected
Version <=
6.1.*
Version
6.1.162
Status
unaffected
Version <=
6.6.*
Version
6.6.122
Status
unaffected
Version <=
6.12.*
Version
6.12.67
Status
unaffected
Version <=
6.18.*
Version
6.18.7
Status
unaffected
Version <=
*
Version
6.19
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.02% | 0.033 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|