CVE-2026-81018

Summary

In the Linux kernel, the following vulnerability has been resolved:

platform/x86: think-lmi: Free system certificate signatures

Multi-certificate support also allows the system authentication object to store ->signature and ->save_signature, which leak when the driver is removed. Free the signatures to avoid leaking memory.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux5dcb5ef125907d09806509a9db8c6705041e0026 < 9c28adde051fe76a7754856d0a414ab89adcaa4daffected
LinuxLinux5dcb5ef125907d09806509a9db8c6705041e0026 < abbcc0354108cf47a6055b951182bf73520d0363affected
LinuxLinux5dcb5ef125907d09806509a9db8c6705041e0026 < abca989604f60fe29d7170431f819e28ec7d868aaffected
LinuxLinux6.13affected
LinuxLinux0 < 6.13unaffected
LinuxLinux6.18.50 <= 6.18.*unaffected
LinuxLinux7.2.4 <= 7.2.*unaffected
LinuxLinux7.3-rc1 <= *unaffected

Weaknesses

References