CNNVD-202601-4120 Information

CNNVD ID

CNNVD-202601-4120

CVE-2025-71154

  • CNNVD Published: 2026-01-23

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于async_set_registers函数在usb_submit_urb失败时未释放URB和请求结构,可能导致内存泄露。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel has a security loophole, which stems from the failure of the Usb submit urb function to release the URL and the request structure, which may result in a memory leak.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2026-01-23

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/12cab1191d9890097171156d06bfa8d31f1e39c8 https://git.kernel.org/stable/c/151403e903840c9cf06754097b6732c14f26c532 https://git.kernel.org/stable/c/2f966186b99550e3c665dbfb87b8314e30acea02 https://git.kernel.org/stable/c/4bd4ea3eb326608ffc296db12c105f92dc2f2190 https://git.kernel.org/stable/c/6492ad6439ff1a479fc94dc6052df3628faed8b6 https://git.kernel.org/stable/c/a4e2442d3c48355a84463342f397134f149936d7 https://git.kernel.org/stable/c/db2244c580540306d60ce783ed340190720cd429

Patch

https://www.kernel.org/

Share on: