CVE-2026-45881
Description
In the Linux kernel, the following vulnerability has been resolved: soc: mediatek: svs: Fix memory leak in svs_enable_debug_write() In svs_enable_debug_write(), the buf allocated by memdup_user_nul() is leaked if kstrtoint() fails. Fix this by using __free(kfree) to automatically free buf, eliminating the need for explicit kfree() calls and preventing leaks. [Angelo: Added missing cleanup.h inclusion]
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ if you've already worked around this in production โ publish your fix to the community-verified tier.
โ Propose a mitigation on Community โ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
OS impact
| OS | Version | Status | Fixed in |
|---|---|---|---|
| debian | bookworm | fixed | 6.1.170-1 |
| debian | bullseye | fixed | 0 |
| debian | forky | fixed | 6.18.14-1 |
| debian | sid | fixed | 6.18.14-1 |
| debian | trixie | fixed | 6.12.85-1 |
| sles | affected | |
References
- https://git.kernel.org/stable/c/47a3e372f7d68776adb749a27c0ec9058ff1b4fd
- https://git.kernel.org/stable/c/06195456c4e4de3826c4ca60eca941c472f991d0
- https://git.kernel.org/stable/c/a58c97828911c0b6e25d6b556789da974003efda
- https://git.kernel.org/stable/c/0f6498077faa9cd89bb787bcc57063494a6f0601
- https://git.kernel.org/stable/c/6bb10466e0884b4a68d4a1f3f4bb87eeb471c18a
- https://git.kernel.org/stable/c/6259094ee806fb813ca95894c65fb80e2ec98bf1
- https://security-tracker.debian.org/tracker/CVE-2026-45881
- https://www.suse.com/security/cve/CVE-2026-45881.html
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.