CVE-2026-45872

NONE EPSS 6.1%
Published May 27, 20261mo ago · Modified Jun 17, 20261w ago
Find Similar
Published May 27, 2026 1mo ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: scsi: smartpqi: Fix memory leak in pqi_report_phys_luns() pqi_report_phys_luns() fails to release the rpl_list buffer when encountering an unsupported data format or when the allocation for rpl_16byte_wwid_list fails. These early returns bypass the cleanup logic, leading to memory leaks. Consolidate the error handling by adding an out_free_rpl_list label and use goto statements to ensure rpl_list is consistently freed on failure. Compile tested only. Issue found using a prototype static analysis tool and code review.

Threat Intelligence

EPSS Exploit Probability
6.1% percentile
Exploit & Patch Status
No Known Exploit
No Patch Available

References 6

  • git.kernel.org https://git.kernel.org/stable/c/41b37312bd9722af77ec7817ccf22d7a4880c289
  • git.kernel.org https://git.kernel.org/stable/c/454570434114e4862767f506a442a0f110b639b2
  • git.kernel.org https://git.kernel.org/stable/c/d52e13122d3771f753dd73ae6512fa01f58015cb
  • git.kernel.org https://git.kernel.org/stable/c/e5579ebaadc7b699868dad0f591a7bf83cd647e1
  • git.kernel.org https://git.kernel.org/stable/c/f471ecfec093e39ef8fd08978413793087daa14d
  • git.kernel.org https://git.kernel.org/stable/c/fdf1188cfa80f88c9f18d58cb33d57ff40e70e26

Remediation

No remediation data recorded yet

Check vendor advisories and the NVD entry for patch availability.