CVE-2026-97584
7.8
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Summary
In the Linux kernel, the following vulnerability has been resolved:
afs: Fix incorrect free in candidate cleanup in afs_lookup_server()
Fix afs_lookup_server() to not free an existing server's endpoint state when cleaning up a candidate server. The candidate record doesn't have an endpoint state yet at this point, so the free for that can just be removed.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | d6aa05cd995830f6dcee7b139335edb266de38a6 < 981d72663dee2fa6efaf202293e68d2b10a0d1d4 | affected |
| Linux | Linux | 4882ba78574e2d8c579658f65f6784b0d139d173 < e5bc0fa9959dc8f7eb1afab7c039594a16a1a65c | affected |
| Linux | Linux | 4882ba78574e2d8c579658f65f6784b0d139d173 < 349e713039a1fd6659c27e7a66238bfa49ce37e9 | affected |
| Linux | Linux | 4882ba78574e2d8c579658f65f6784b0d139d173 < 044d596094af4b769fb8e1173dff0d08bd68db6c | affected |
| Linux | Linux | 6.12.101 < 6.12.111 | affected |
| Linux | Linux | 6.15 | affected |
| Linux | Linux | 0 < 6.15 | unaffected |
| Linux | Linux | 6.12.111 <= 6.12.* | unaffected |
| Linux | Linux | 6.18.53 <= 6.18.* | unaffected |
| Linux | Linux | 7.2.7 <= 7.2.* | unaffected |
| Linux | Linux | 7.3-rc3 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/981d72663dee2fa6efaf202293e68d2b10a0d1d4
- https://git.kernel.org/stable/c/e5bc0fa9959dc8f7eb1afab7c039594a16a1a65c
- https://git.kernel.org/stable/c/349e713039a1fd6659c27e7a66238bfa49ce37e9
- https://git.kernel.org/stable/c/044d596094af4b769fb8e1173dff0d08bd68db6c
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.