CVE-2026-74525

medium

Description

In the Linux kernel, the following vulnerability has been resolved: net: sxgbe: free TX rings on RX allocation failure When RX descriptor ring allocation fails, init_dma_desc_rings() only frees the partially allocated RX rings and returns. The TX rings that were allocated earlier in the same function are leaked. Rearrange error labels to clean up TX rings upon RX failures.

References

https://git.kernel.org/stable/c/f52de3ea462229457334c9d3c0d95a7856908664

https://git.kernel.org/stable/c/f2e5bb9fb710553e76a3be9097b448b4e73d8c92

https://git.kernel.org/stable/c/c870f7e2890b9f78ac84515a9809cc5c183c975e

https://git.kernel.org/stable/c/b33644a4f6d8f127c62d7b39f24114d3d2499204

https://git.kernel.org/stable/c/a07a69f472fff1c6edf77ca97616381657a8444c

https://git.kernel.org/stable/c/923389d0370b4117bd579784442e8450f9bb89be

https://git.kernel.org/stable/c/42b87cfd9666ef156637c90ff3f6f6dd9a5ad4cb

https://git.kernel.org/stable/c/3563e2486dcd50a751dbcbc1de37e5186646dce6

Details

Source: Mitre, NVD

Published: 2026-08-15

Updated: 2026-08-19

Risk Information

CVSS v2

Base Score: 5.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium

EPSS

EPSS: 0.00168