CVE-2026-89924
N/A
Summary
In the Linux kernel, the following vulnerability has been resolved:
KVM: s390: Fix old_data leak in guest debug error path
__import_wp_info() allocates a per-watchpoint old_data buffer to back up the original guest memory contents. If a later watchpoint of the same KVM_SET_GUEST_DEBUG request fails to import, kvm_s390_import_bp_data() jumps to the error label, which frees the wp_info array but not the old_data buffers of the entries that were imported successfully. Up to MAX_BP_COUNT - 1 buffers of up to MAX_WP_SIZE bytes are leaked per failed request, and the request can be repeated.
Create error handling for cleaning up all created old_data memory areas.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 27291e2165b6de70c476b7b675308113edd69a60 < 124c81ee610e1fbdd93d4399f88d9e28ba97a941 | affected |
| Linux | Linux | 27291e2165b6de70c476b7b675308113edd69a60 < e5ae7816e5ad145618f7fd568a0e8a94dd9f81f4 | affected |
| Linux | Linux | 27291e2165b6de70c476b7b675308113edd69a60 < c85d402553987777cc4742751437ea5dcbf98a7b | affected |
| Linux | Linux | 27291e2165b6de70c476b7b675308113edd69a60 < 5fbf319137735252eefa507193c9a619af5b7457 | affected |
| Linux | Linux | 27291e2165b6de70c476b7b675308113edd69a60 < 4048d0a252163084794be3e37995b872c5178913 | affected |
| Linux | Linux | 27291e2165b6de70c476b7b675308113edd69a60 < f55e4d415d95342d5753e528e05a1e8623992c3f | affected |
| Linux | Linux | 27291e2165b6de70c476b7b675308113edd69a60 < 46cb8a273e2f853f89a78b59dbdff8787b6e1c86 | affected |
| Linux | Linux | 27291e2165b6de70c476b7b675308113edd69a60 < aa9c8e8baf1e765fa65b93212522c636f25d846f | affected |
| Linux | Linux | 3.16 | affected |
| Linux | Linux | 0 < 3.16 | unaffected |
| Linux | Linux | 5.10.270 <= 5.10.* | unaffected |
| Linux | Linux | 5.15.221 <= 5.15.* | unaffected |
| Linux | Linux | 6.1.188 <= 6.1.* | unaffected |
| Linux | Linux | 6.6.157 <= 6.6.* | unaffected |
| Linux | Linux | 6.12.110 <= 6.12.* | unaffected |
| Linux | Linux | 6.18.51 <= 6.18.* | unaffected |
| Linux | Linux | 7.2.5 <= 7.2.* | unaffected |
| Linux | Linux | 7.3-rc1 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/124c81ee610e1fbdd93d4399f88d9e28ba97a941
- https://git.kernel.org/stable/c/e5ae7816e5ad145618f7fd568a0e8a94dd9f81f4
- https://git.kernel.org/stable/c/c85d402553987777cc4742751437ea5dcbf98a7b
- https://git.kernel.org/stable/c/5fbf319137735252eefa507193c9a619af5b7457
- https://git.kernel.org/stable/c/4048d0a252163084794be3e37995b872c5178913
- https://git.kernel.org/stable/c/f55e4d415d95342d5753e528e05a1e8623992c3f
- https://git.kernel.org/stable/c/46cb8a273e2f853f89a78b59dbdff8787b6e1c86
- https://git.kernel.org/stable/c/aa9c8e8baf1e765fa65b93212522c636f25d846f
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.