CVE-2026-74525

medium

Description

In the Linux kernel, the following vulnerability has been resolved: net: sxgbe: free TX rings on RX allocation failure When RX descriptor ring allocation fails, init_dma_desc_rings() only frees the partially allocated RX rings and returns. The TX rings that were allocated earlier in the same function are leaked. Rearrange error labels to clean up TX rings upon RX failures.

References

https://git.kernel.org/stable/c/f2e5bb9fb710553e76a3be9097b448b4e73d8c92

https://git.kernel.org/stable/c/c870f7e2890b9f78ac84515a9809cc5c183c975e

https://git.kernel.org/stable/c/b33644a4f6d8f127c62d7b39f24114d3d2499204

https://git.kernel.org/stable/c/42b87cfd9666ef156637c90ff3f6f6dd9a5ad4cb

https://git.kernel.org/stable/c/3563e2486dcd50a751dbcbc1de37e5186646dce6

Details

Source: Mitre, NVD

Published: 2026-08-15

Updated: 2026-08-15

Risk Information

CVSS v2

Base Score: 5.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium

EPSS

EPSS: 0.00168