GHSA-368f-c575-88hqunknown
In the Linux kernel, the following vulnerability has been resolved: powercap: intel_rapl: Fix...
🔗 CVE IDs covered (1)
📋 Description
In the Linux kernel, the following vulnerability has been resolved:
powercap: intel_rapl: Fix memory leak in rapl_add_package_cpuslocked()
When topology_physical_package_id()/topology_logical_die_id() returns a negative value, rapl_add_package_cpuslocked() returns ERR_PTR(-EINVAL) directly without freeing the rapl_package structure that was just allocated by kzalloc_obj(), leaking memory on every failed package addition.
Use the existing err_free_package label so that the allocation is released on the error path.
🔗 References (5)
- https://nvd.nist.gov/vuln/detail/CVE-2026-97473
- https://git.kernel.org/stable/c/3e9e9337e03be946ec93f2c9d28dab242482be1b
- https://git.kernel.org/stable/c/992c60771749d8d8cbfbd06049785fff95c72df1
- https://git.kernel.org/stable/c/bfc7d93bc5e12288e5dc6bb54260f68cdf5a5c47
- https://github.com/advisories/GHSA-368f-c575-88hq