Vulnerability Bulletins

CVE-2026-43457

   
Affected software LINUX KERNEL
 
In the Linux kernel, the following vulnerability has been resolved:

mctp: i2c: fix skb memory leak in receive path

When 'midev->allow_rx' is false, the newly allocated skb isn't consumed
by netif_rx(), it needs to free the skb directly.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-43457