Boletines de Vulnerabilidades

CVE-2026-46221

   
Software afectado LINUX KERNEL
 
In the Linux kernel, the following vulnerability has been resolved:

EDAC/versalnet: Fix device name memory leak

The device name allocated via kzalloc() in init_one_mc() is assigned to
dev->init_name but never freed on the normal removal path. device_register()
copies init_name and then sets dev->init_name to NULL, so the name pointer
becomes unreachable from the device. Thus leaking memory.

Use a stack-local char array instead of using kzalloc() for name.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-46221