CVE-2026-97473

Summary

In the Linux kernel, the following vulnerability has been resolved:

powercap: intel_rapl: Fix memory leak in rapl_add_package_cpuslocked()

When topology_physical_package_id()/topology_logical_die_id() returns a negative value, rapl_add_package_cpuslocked() returns ERR_PTR(-EINVAL) directly without freeing the rapl_package structure that was just allocated by kzalloc_obj(), leaking memory on every failed package addition.

Use the existing err_free_package label so that the allocation is released on the error path.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 3e9e9337e03be946ec93f2c9d28dab242482be1baffected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 992c60771749d8d8cbfbd06049785fff95c72df1affected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < bfc7d93bc5e12288e5dc6bb54260f68cdf5a5c47affected
LinuxLinux0 < 6.12.111affected
LinuxLinux0 < 6.18.53affected
LinuxLinux6.12.111 <= 6.12.*unaffected
LinuxLinux6.18.53 <= 6.18.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References