PT-2026-98074 · Linux · Linux

CVE-2026-97440

·

Published

2026-09-24

·

Updated

2026-09-24

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
In the Linux kernel, the following vulnerability has been resolved:
net: qrtr: fix node refcount leak on ctrl packet alloc failure
qrtr send resume tx() calls qrtr node lookup() which takes a reference on the returned node. If the subsequent call to qrtr alloc ctrl packet() fails due to memory allocation failure, the function returns -ENOMEM without calling qrtr node release() to release the node reference.
Add qrtr node release(node) before returning on the allocation failure path to properly release the reference.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-97440

Affected Products

Linux