CVE Database
/

CVE-2026-23259

Back to search

CVE-2026-23259

Published: Mar 18, 2026

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: io_uring/rw: free potentially allocated iovec on cache put failure If a read/write request goes through io_req_rw_cleanup() and has an allocated iovec attached and fails to put to the rw_cache, then it may end up with an unaccounted iovec pointer. Have io_rw_recycle() return whether it recycled the request or not, and use that to gauge whether to free a potential iovec or not.

VendorProductVersions

Linux

Linux

affected
a9165b83c1937eeed1f0c731468216d6371d647f - < 1d5f2329ab4df65c2ee011b986d8a6e05ad0f67c
affected
a9165b83c1937eeed1f0c731468216d6371d647f - < 4b9748055457ac3a0710bf210c229d01ea1b01b9

Linux

Linux

affected
6.10
unaffected
0 - < 6.10
unaffected
6.18.10 - <= 6.18.*
unaffected
6.19 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now