-

CVE-2026-72032

net/mlx5: HWS, fix matcher leak on resize target setup failure

In the Linux kernel, the following vulnerability has been resolved:

net/mlx5: HWS, fix matcher leak on resize target setup failure

hws_bwc_matcher_move() allocates a replacement matcher before setting it
as the resize target. If mlx5hws_matcher_resize_set_target() fails, the
replacement matcher is not attached anywhere and is leaked.

Fix the leak by destroying the replacement matcher before returning from
the resize-target failure path.

The bug was first flagged by an experimental analysis tool we are
developing for kernel memory-management bugs while analyzing
v6.13-rc1. The tool is still under development and is not yet publicly
available. Manual inspection confirms that the bug is still
present in v7.1.1.

An x86_64 allyesconfig build showed no new warnings. As we do not have a
mlx5 HWS-capable device to test with, no runtime testing was able to be
performed.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 2111bb970c787b16b002dc726c1d296ce87a00fb
Version < a751ccdc6ea9bde154f25a5ba66926f462f96c19
Status affected
Version 2111bb970c787b16b002dc726c1d296ce87a00fb
Version < 1dce4f4bb3c1c02080b1a45bdd2abb2913a6642a
Status affected
Version 2111bb970c787b16b002dc726c1d296ce87a00fb
Version < ae0265f0a95aaacef59d560a3e1ea36db8be9a52
Status affected
Version 2111bb970c787b16b002dc726c1d296ce87a00fb
Version < bb09d0e64ecaa0aa0f7d1133a1696ed74dead295
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.12
Status affected
Version 0
Version < 6.12
Status unaffected
Version <= 6.12.*
Version 6.12.101
Status unaffected
Version <= 6.18.*
Version 6.18.40
Status unaffected
Version <= 7.1.*
Version 7.1.5
Status unaffected
Version <= *
Version 7.2
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.101
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/a751ccdc6ea9bde154f25a5ba66926f462f96c19
https://git.kernel.org/stable/c/1dce4f4bb3c1c02080b1a45bdd2abb2913a6642a
https://git.kernel.org/stable/c/ae0265f0a95aaacef59d560a3e1ea36db8be9a52
https://git.kernel.org/stable/c/bb09d0e64ecaa0aa0f7d1133a1696ed74dead295