CVE-2026-68413 PUBLISHED

wifi: ipw2100: fix potential memory leak in ipw2100_pci_init_one()

Assigner: Linux
Reserved: 30.07.2026 Published: 10.08.2026 Updated: 10.08.2026

In the Linux kernel, the following vulnerability has been resolved:

wifi: ipw2100: fix potential memory leak in ipw2100_pci_init_one()

The memory allocated in the ipw2100_alloc_device() function is not freed in some of the error paths in ipw2100_pci_init_one(). Fix that by converting the direct return into a goto to the error path return.

The error path when pci_enable_device() fails cannot jump to fail, since at this point priv is not set, so perform error handling inline.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 2c86c275015c880e810830304a3a4ab94803b38b to f75b9a2a9d8334ae0f9c5e47df7b31f7aeb1fdbe (excl.)
  • affected from 2c86c275015c880e810830304a3a4ab94803b38b to 836a19c654dcb1b01878a70090af016fbd0fd7e5 (excl.)
  • affected from 2c86c275015c880e810830304a3a4ab94803b38b to f442e581a88937671a22ceb3806c186265ef6254 (excl.)
  • affected from 2c86c275015c880e810830304a3a4ab94803b38b to 7cbda50eebcd9aa00b0de382f776287cf7a36cf8 (excl.)
  • affected from 2c86c275015c880e810830304a3a4ab94803b38b to 0d388f62031dbabcba0f44bb91b59f10e88cac17 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 2.6.14 is affected
  • unaffected from 0 to 2.6.14 (excl.)
  • unaffected from 6.6.148 to 6.6.* (incl.)
  • unaffected from 6.12.101 to 6.12.* (incl.)
  • unaffected from 6.18.42 to 6.18.* (incl.)
  • unaffected from 7.1.6 to 7.1.* (incl.)
  • unaffected from 7.2-rc4 to * (incl.)

References