In the Linux kernel, the following vulnerability has been resolved:
i3c: dw: Fix memory leak in dw_i3c_master_i2c_xfers()
The dw_i3c_master_i2c_xfers() function allocates memory for the xfer
structure using dw_i3c_master_alloc_xfer(). If pm_runtime_resume_and_get()
fails, the function returns without freeing the allocated xfer, resulting
in a memory leak.
Add a dw_i3c_master_free_xfer() call to the error path to ensure the
allocated memory is properly freed.
Compile tested only. Issue found using a prototype static analysis tool
and code review.
References
Configurations
Configuration 1 (hide)
|
History
25 Jun 2026, 21:07
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://git.kernel.org/stable/c/140a45bd4f6db7d1b30cab967d29689b946c52fa - Patch | |
| References | () https://git.kernel.org/stable/c/2537089413514caaa9a5fdeeac3a34d45100f747 - Patch | |
| References | () https://git.kernel.org/stable/c/8e71414e252c1cb235911008a98fd47927d3a55c - Patch | |
| References | () https://git.kernel.org/stable/c/a2c41467ef42f69a3958493a0395ba75174710dc - Patch | |
| CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
| CWE | CWE-401 | |
| First Time |
Linux linux Kernel
Linux |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
27 May 2026, 14:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-27 14:16
Updated : 2026-06-25 21:07
NVD link : CVE-2026-45863
Mitre link : CVE-2026-45863
CVE.ORG link : CVE-2026-45863
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-401
Missing Release of Memory after Effective Lifetime
