CVE-2026-45986 PUBLISHED

crypto: ccree - fix a memory leak in cc_mac_digest()

Assigner: Linux
Reserved: 13.05.2026 Published: 27.05.2026 Updated: 27.05.2026

In the Linux kernel, the following vulnerability has been resolved:

crypto: ccree - fix a memory leak in cc_mac_digest()

Add cc_unmap_result() if cc_map_hash_request_final() fails to prevent potential memory leak.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 63893811b0fcb52f6eaf9811cc08bddd46f81c3e to 3061c9bfb3f5b3522ab174e2fa7473b24422d1c6 (excl.)
  • affected from 63893811b0fcb52f6eaf9811cc08bddd46f81c3e to 22f1dd4ca3bfe77db52cc7df3cc353dc114aab8b (excl.)
  • affected from 63893811b0fcb52f6eaf9811cc08bddd46f81c3e to 910f335786a0a0f0b46c3c8c19a13d25cb4454b6 (excl.)
  • affected from 63893811b0fcb52f6eaf9811cc08bddd46f81c3e to 502440c235fe34cee02b24d7f893841f7565b3bc (excl.)
  • affected from 63893811b0fcb52f6eaf9811cc08bddd46f81c3e to 02c64052fad03699b9c6d1df2f9b444d17e4ac50 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 4.17 is affected
  • unaffected from 0 to 4.17 (excl.)
  • unaffected from 6.6.140 to 6.6.* (incl.)
  • unaffected from 6.12.86 to 6.12.* (incl.)
  • unaffected from 6.18.27 to 6.18.* (incl.)
  • unaffected from 7.0.4 to 7.0.* (incl.)
  • unaffected from 7.1-rc1 to * (incl.)

References