CVE-2026-23330

Source
https://cve.org/CVERecord?id=CVE-2026-23330
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-23330.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-23330
Downstream
Published
2026-03-25T10:27:21.871Z
Modified
2026-04-02T13:12:21.924282Z
Summary
nfc: nci: complete pending data exchange on device close
Details

In the Linux kernel, the following vulnerability has been resolved:

nfc: nci: complete pending data exchange on device close

In nciclosedevice(), complete any pending data exchange before closing. The data exchange callback (e.g. rawsockdataexchange_complete) holds a socket reference.

NIPA occasionally hits this leak:

unreferenced object 0xff1100000f435000 (size 2048): comm "nci_dev", pid 3954, jiffies 4295441245 hex dump (first 32 bytes): 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 27 00 01 40 00 00 00 00 00 00 00 00 00 00 00 00 '..@............ backtrace (crc ec2b3c5): __kmallocnoprof+0x4db/0x730 skprotalloc.isra.0+0xe4/0x1d0 skalloc+0x36/0x760 rawsockcreate+0xd1/0x540 nfcsock_create+0x11f/0x280 __sock_create+0x22d/0x630 __sys_socket+0x115/0x1d0 __x64syssocket+0x72/0xd0 dosyscall64+0x117/0xfc0 entrySYSCALL64afterhwframe+0x4b/0x53

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/23xxx/CVE-2026-23330.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
38f04c6b1b682f1879441e2925403ad9aff9e229
Fixed
91ff0d8c3464da7f0c43da38c195e60b660128bf
Fixed
d05f55d68ebdebb2b0a8480d766eaae88c8c92de
Fixed
66083581945bd5b8e99fe49b5aeb83d03f62d053

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-23330.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.2.0
Fixed
6.18.17
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
6.19.7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-23330.json"