CVE-2026-68468

Source
https://cve.org/CVERecord?id=CVE-2026-68468
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68468.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-68468
Downstream
Published
2026-08-15T05:51:26.686Z
Modified
2026-08-18T03:30:52.439895410Z
Summary
mtd: virt-concat: free duplicate generated name
Details

In the Linux kernel, the following vulnerability has been resolved:

mtd: virt-concat: free duplicate generated name

Every MTD registration runs mtdvirtconcatcreatejoin(). Once a virtual concat has already been registered, the function builds the same name again and takes the equal-name branch. That branch skips to the next item without freeing the newly allocated string.

Free the temporary name before continuing.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68468.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
43db6366fc2de02050e66389f5628d3fdc9af10a
Fixed
0e65079d28e5c461b6813ea5821be4dfff24ff63
Fixed
caa0ecbeff4f7fbf70f22bd8ca598918bffb1b78

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68468.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
7.1.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68468.json"