In the Linux kernel, the following vulnerability has been resolved:
rxrpc: Fix memory leaks in rxkad_verify_response()
Fix rxkad_verify_response() to free the ticket and the server key under all
circumstances by initialising the ticket pointer to NULL and then making
all paths through the function after the first allocation has been done go
through a single common epilogue that just releases everything - where all
the releases skip on a NULL pointer.
References
Configurations
Configuration 1 (hide)
|
History
16 Jun 2026, 15:25
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
| First Time |
Linux linux Kernel
Linux |
|
| CWE | CWE-401 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
| References | () https://git.kernel.org/stable/c/34f61a07e0cdefaecd3ec03bb5fb22215643678f - Patch | |
| References | () https://git.kernel.org/stable/c/852b9d64cea421336579b2de3d1338dfa677e2dd - Patch | |
| References | () https://git.kernel.org/stable/c/861b9a0a1823bf064a7b810d29502a9ef043f40f - Patch | |
| References | () https://git.kernel.org/stable/c/c4b8f32e73eafd4a5076be890c7c8506ec04567c - Patch | |
| References | () https://git.kernel.org/stable/c/c91f33fb8356dedc82bc56ce210f1a5dbee62a52 - Patch |
27 May 2026, 14:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-27 14:17
Updated : 2026-06-17 10:52
NVD link : CVE-2026-46012
Mitre link : CVE-2026-46012
CVE.ORG link : CVE-2026-46012
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-401
Missing Release of Memory after Effective Lifetime
