5.5
CVE-2026-31459
- EPSS 0.12%
- Veröffentlicht 22.04.2026 14:16:41
- Zuletzt bearbeitet 06.05.2026 20:03:36
- Erkennungen
mm/damon/sysfs: fix param_ctx leak on damon_sysfs_new_test_ctx() failure
In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs: fix param_ctx leak on damon_sysfs_new_test_ctx() failure Patch series "mm/damon/sysfs: fix memory leak and NULL dereference issues", v4. DAMON_SYSFS can leak memory under allocation failure, and do NULL pointer dereference when a privileged user make wrong sequences of control. Fix those. This patch (of 3): When damon_sysfs_new_test_ctx() fails in damon_sysfs_commit_input(), param_ctx is leaked because the early return skips the cleanup at the out label. Destroy param_ctx before returning.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 6.18.1 < 6.18.21
Linux ≫ Linux Kernel Version >= 6.19 < 6.19.11
Linux ≫ Linux Kernel Version 6.17.6
Linux ≫ Linux Kernel Version 6.18 Update -
Linux ≫ Linux Kernel Version 6.18 Update rc3
Linux ≫ Linux Kernel Version 6.18 Update rc4
Linux ≫ Linux Kernel Version 6.18 Update rc5
Linux ≫ Linux Kernel Version 6.18 Update rc6
Linux ≫ Linux Kernel Version 6.18 Update rc7
Linux ≫ Linux Kernel Version 7.0 Update rc1
Linux ≫ Linux Kernel Version 7.0 Update rc2
Linux ≫ Linux Kernel Version 7.0 Update rc3
Linux ≫ Linux Kernel Version 7.0 Update rc4
Linux ≫ Linux Kernel Version 7.0 Update rc5
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.12% | 0.022 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
CWE-401 Missing Release of Memory after Effective Lifetime
The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.
https://git.kernel.org/stable/c/7fe000eb32904758a85e62f6ea9483f89d5dabfc
https://git.kernel.org/stable/c/e9de9f3ce06b133a348006668bc8d25c6e504867
https://git.kernel.org/stable/c/f76f0a964bc3d7b7e253b43c669c41356bc54e71