CVE-2026-68183

Summary

In the Linux kernel, the following vulnerability has been resolved:

firmware: stratix10-svc: fix memory leaks and list corruption bugs

Fix a memory leak when gen_pool_alloc() fails by freeing pmem on the error path. Switch pmem allocation from devm_kzalloc() to kzalloc() with explicit kfree() in the free path to match its list-managed lifetime. Remove the erroneous list_del(&svc_data_mem) which corrupted the list head on failed lookups.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux7ca5ce896524f5292e610b27d168269e5ab74951 < 95f702e372964aff486338783f49e28a40a53127affected
LinuxLinux7ca5ce896524f5292e610b27d168269e5ab74951 < fff6e5ff0318315998b540896537eaaa2ebf9f7baffected
LinuxLinux7ca5ce896524f5292e610b27d168269e5ab74951 < 4f2db41a09eba7a45abd140bb86ffc519c191886affected
LinuxLinux7ca5ce896524f5292e610b27d168269e5ab74951 < 8e93a083456d78f6b0aa1f58d2b0c7071a2a7a47affected
LinuxLinux7ca5ce896524f5292e610b27d168269e5ab74951 < 9119ceb76e987c2ec2b549ea100e3268ce3a1c7caffected
LinuxLinux5.0affected
LinuxLinux0 < 5.0unaffected
LinuxLinux6.6.151 <= 6.6.*unaffected
LinuxLinux6.12.101 <= 6.12.*unaffected
LinuxLinux6.18.42 <= 6.18.*unaffected
LinuxLinux7.1.6 <= 7.1.*unaffected
LinuxLinux7.2-rc5 <= *unaffected

Weaknesses

References