Boletines de Vulnerabilidades

CVE-2026-31520

   
Software afectado APPLE
 
In the Linux kernel, the following vulnerability has been resolved:

HID: apple: avoid memory leak in apple_report_fixup()

The apple_report_fixup() function was returning a
newly kmemdup()-allocated buffer, but never freeing it.

The caller of report_fixup() does not take ownership of the returned
pointer, but it *is* permitted to return a sub-portion of the input
rdesc, whose lifetime is managed by the caller.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-31520