CVE-2026-23023

Source
https://cve.org/CVERecord?id=CVE-2026-23023
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-23023.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-23023
Downstream
Related
Published
2026-01-31T11:39:06.718Z
Modified
2026-03-24T09:12:59.192215Z
Summary
idpf: fix memory leak in idpf_vport_rel()
Details

In the Linux kernel, the following vulnerability has been resolved:

idpf: fix memory leak in idpfvportrel()

Free vport->rxptypelkup in idpfvportrel() to avoid leaking memory during a reset. Reported by kmemleak:

unreferenced object 0xff450acac838a000 (size 4096): comm "kworker/u258:5", pid 7732, jiffies 4296830044 hex dump (first 32 bytes): 00 00 00 00 00 10 00 00 00 10 00 00 00 00 00 00 ................ 00 00 00 00 00 00 00 00 00 10 00 00 00 00 00 00 ................ backtrace (crc 3da81902): _kmalloccachenoprof+0x469/0x7a0 idpfsendgetrxptypemsg+0x90/0x570 [idpf] idpfinittask+0x1ec/0x8d0 [idpf] processonework+0x226/0x6d0 workerthread+0x19e/0x340 kthread+0x10f/0x250 retfromfork+0x251/0x2b0 retfromforkasm+0x1a/0x30

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/23xxx/CVE-2026-23023.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0fe45467a1041ea3657a7fa3a791c84c104fbd34
Fixed
a4212d6732e3f674c6cc7d0b642f276d827e8f94
Fixed
ec602a2a4071eb956d656ba968c58fee09f0622d
Fixed
f6242b354605faff263ca45882b148200915a3f6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-23023.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.66
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-23023.json"