← Zurück zur CVE-Suche

CVE-2026-53213

Linux Kernel

Beschreibung

In the Linux kernel, the following vulnerability has been resolved: drm/vc4: fix krealloc() memory leak Don-t just overwrite the original pointer passed to krealloc() with its return value without checking latter: MEM = krealloc(MEM, SZ, GFP); If krealloc() returns NULL, that erases the pointer to the still allocated memory, hence leaks this memory. Instead, use a temporary variable, check it-s not NULL and only then assign it to the original pointer: TMP = krealloc(MEM, SZ, GFP); if (!TMP) return; MEM = TMP; While on it, use krealloc_array().

CVSS 5.5EPSS 0.123%Risiko 0.56
Quelle öffnen
Veröffentlicht
2026-06-25 09:16:38
Betroffene Versionen
unknown
Typ
Kernel
Vektor
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Betriebssysteme
Linux