CVE-2026-68413

high

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: ipw2100: fix potential memory leak in ipw2100_pci_init_one() The memory allocated in the ipw2100_alloc_device() function is not freed in some of the error paths in ipw2100_pci_init_one(). Fix that by converting the direct return into a goto to the error path return. The error path when pci_enable_device() fails cannot jump to fail, since at this point priv is not set, so perform error handling inline.

References

https://git.kernel.org/stable/c/f75b9a2a9d8334ae0f9c5e47df7b31f7aeb1fdbe

https://git.kernel.org/stable/c/f442e581a88937671a22ceb3806c186265ef6254

https://git.kernel.org/stable/c/836a19c654dcb1b01878a70090af016fbd0fd7e5

https://git.kernel.org/stable/c/7cbda50eebcd9aa00b0de382f776287cf7a36cf8

https://git.kernel.org/stable/c/0d388f62031dbabcba0f44bb91b59f10e88cac17

Details

Source: Mitre, NVD

Published: 2026-08-10

Updated: 2026-08-10

Risk Information

CVSS v2

Base Score: 4.9

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 7.1

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

Severity: High