CVE-2026-31529 PUBLISHED

cxl/region: Fix leakage in __construct_region()

Assigner: Linux
Reserved: 09.03.2026 Published: 22.04.2026 Updated: 22.04.2026

In the Linux kernel, the following vulnerability has been resolved:

cxl/region: Fix leakage in __construct_region()

Failing the first sysfs_update_group() needs to explicitly kfree the resource as it is too early for cxl_region_iomem_release() to do so.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from d6602e25819dea2c239972e98e09ba5db4aebd22 to f1b4741adf08b0063291ec1b0dfa9c3d55644933 (excl.)
  • affected from d6602e25819dea2c239972e98e09ba5db4aebd22 to 77b310bb7b5ff8c017524df83292e0242ba89791 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 6.19 is affected
  • unaffected from 0 to 6.19 (excl.)
  • unaffected from 6.19.11 to 6.19.* (incl.)
  • unaffected from 7.0 to * (incl.)

References