CVE-2026-72050

Summary

In the Linux kernel, the following vulnerability has been resolved:

octeontx2-af: Free BPID bitmap on setup failure

nix_setup_bpids() allocates bp->bpids with rvu_alloc_bitmap(), which uses a plain kcalloc(). If any of the following devm_kcalloc() allocations for the BPID mapping arrays fails, the function returns without freeing the bitmap. Free the BPID bitmap before returning from those error paths.

Affected Software

VendorProductVersion RangeStatus
LinuxLinuxd6212d2e41a0cb1ff6b059db79c70752cdafc95e < 7a939b683a74bd7d7ce4e3b7f696b491c8d71af4affected
LinuxLinuxd6212d2e41a0cb1ff6b059db79c70752cdafc95e < 19c148cb82d11bb7cc7d86038a94e608a297e63caffected
LinuxLinuxd6212d2e41a0cb1ff6b059db79c70752cdafc95e < d0c880c9f4051100517040d065caff60e913b659affected
LinuxLinuxd6212d2e41a0cb1ff6b059db79c70752cdafc95e < 36323f54cd323122a1be89ab2c316a6e55a94e30affected
LinuxLinux6.9affected
LinuxLinux0 < 6.9unaffected
LinuxLinux6.12.97 <= 6.12.*unaffected
LinuxLinux6.18.40 <= 6.18.*unaffected
LinuxLinux7.1.5 <= 7.1.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References