CVE-2026-23038

CVSS

No CVSS.

I

n the Linux kernel, the following vulnerability has been resolved: pnfs/flexfiles: Fix memory leak in nfs4_ff_alloc_deviceid_node() In nfs4_ff_alloc_deviceid_node(), if the allocation for ds_versions fails, the function jumps to the out_scratch label without freeing the already allocated dsaddrs list, leading to a memory leak. Fix this by jumping to the out_err_drain_dsaddrs label, which properly frees the dsaddrs list before cleaning up other resources.

Configurations

No configuration.

History

06 Feb 2026, 17:16

Type Values Removed Values Added
References
  • () https://git.kernel.org/stable/c/27c90d8ed81e7a289c9fe41b5e31d8bb609a3385 -
  • () https://git.kernel.org/stable/c/34b9dd179818ff7af2b36410985fd8166573c62d -
  • () https://git.kernel.org/stable/c/e2dde5dafb80f1af4028ed10ad255f42af71c784 -

31 Jan 2026, 12:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-31 12:16

Updated : 2026-02-06 17:16


NVD link : CVE-2026-23038

Mitre link : CVE-2026-23038

CVE.ORG link : CVE-2026-23038


JSON object : View

Products Affected

No product.

CWE

No CWE.