CVE-2026-43225
In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix memory leak on failure path cfg80211_inform_bss_frame() may return NULL on failure.
Does this matter?
Lower severity and a low EPSS score (0.13%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix memory leak on failure path cfg80211_inform_bss_frame() may return NULL on failure. In that case, the allocated buffer 'buf' is not freed and the function returns early, leading to potential memory leak. Fix this by ensuring that 'buf' is freed on both success and failure paths.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.13% probability · 3th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-401
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/017295b17bf1f477246c95bd253a7ef0cb4684c9Patch
- https://git.kernel.org/stable/c/8311bb40698ba027649d5d1ca84ad4bf25270546Patch
- https://git.kernel.org/stable/c/9874e33ce52ba449ab0ade78752a2d37a2294617Patch
- https://git.kernel.org/stable/c/9f70f78e22b321429afc77befecedf05543d4e2cPatch
- https://git.kernel.org/stable/c/a968c6a39607c129b8ac2c3c2a5e8923574e90d0Patch
- https://git.kernel.org/stable/c/abe850d82c8cb72d28700673678724e779b1826ePatch
- https://git.kernel.org/stable/c/af48c1a0abe849e167fc754b6c260b6d8350b6fdPatch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.