CVE Database
/

CVE-2026-31522

Back to search

CVE-2026-31522

Published: Apr 22, 2026

Modified: May 23, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: HID: magicmouse: avoid memory leak in magicmouse_report_fixup() The magicmouse_report_fixup() function was returning a newly kmemdup()-allocated buffer, but never freeing it. The caller of report_fixup() does not take ownership of the returned pointer, but it *is* permitted to return a sub-portion of the input rdesc, whose lifetime is managed by the caller.

VendorProductVersions

Linux

Linux

affected
e6ad399596bd234be4722022146e33e15c7e424d - < 579c4c9857acdc8380fa99803f355f878bd766cb
affected
0b91b4e4dae63cd43871fc2012370b86ee588f91 - < d84c21aabaab517b9aaf9bc1d785922cb9db2f31
affected
0b91b4e4dae63cd43871fc2012370b86ee588f91 - < 7edfe4346b052b708645d0acc0f186425766b785
affected
0b91b4e4dae63cd43871fc2012370b86ee588f91 - < 79e5dcc95d9abed6f8203cfd529f4ec71f0e505d
affected
0b91b4e4dae63cd43871fc2012370b86ee588f91 - < 136f605e246b4bfe7ac2259471d1ff814aed0084

+5 more versions

Linux

Linux

affected
5.17
unaffected
0 - < 5.17
unaffected
5.15.203 - <= 5.15.*
unaffected
6.1.168 - <= 6.1.*
unaffected
6.6.131 - <= 6.6.*

+4 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now