๐Ÿ” CVE Alert

CVE-2026-80555

HIGH 7.1

s390/vfio_ccw: Free all memory if cp_init() fails

CVSS Score
7.1
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: s390/vfio_ccw: Free all memory if cp_init() fails The routine cp_free() is called to unpin/free any memory once an I/O is completed successfully, or if cp_prefetch() fails. But if cp_init() fails, and cp->initialized is not enabled, the same routine cannot be used to free all the memory. An attempt to address this exists in ccwchain_handle_ccw(), where a single call to ccwchain_free() is made for the currently-processed CCW segment. But this will leak other segments (created as a result of a Transfer in Channel) that had been allocated as part of the same channel program. Address this by performing the cleanup outside of the recursive ccwchain_handle_ccw()/ccwchain_loop_tic() logic.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 26, 2026
Last Updated Aug 27, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new high vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

Linux / Linux
8b515be512a2435bb8aedc6390cbe140167f9eb9 < 276bd7ed34d56c48c65c43c0b08f2ee77029b2fa 8b515be512a2435bb8aedc6390cbe140167f9eb9 < f9bcff265556796834122f95de16d52a8375206c 8b515be512a2435bb8aedc6390cbe140167f9eb9 < 17e01e342af74de12899c206dcc9ec90684703aa 8b515be512a2435bb8aedc6390cbe140167f9eb9 < 152fcb74a26804b70909381c6acc90595a0ae1c1 8b515be512a2435bb8aedc6390cbe140167f9eb9 < 6a917199aaf97904f5619afe3dfdacb155b03e8c 8b515be512a2435bb8aedc6390cbe140167f9eb9 < 32e3d364a7b8295120d37e6a6bd433d2de26f748 8b515be512a2435bb8aedc6390cbe140167f9eb9 < 4699b54fada156534cbb39834d47fc9374d7a1f5 8b515be512a2435bb8aedc6390cbe140167f9eb9 < 74186c2968f8f756ac3226b545b598457c910c75
Linux / Linux
5.3

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/276bd7ed34d56c48c65c43c0b08f2ee77029b2fa git.kernel.org: https://git.kernel.org/stable/c/f9bcff265556796834122f95de16d52a8375206c git.kernel.org: https://git.kernel.org/stable/c/17e01e342af74de12899c206dcc9ec90684703aa git.kernel.org: https://git.kernel.org/stable/c/152fcb74a26804b70909381c6acc90595a0ae1c1 git.kernel.org: https://git.kernel.org/stable/c/6a917199aaf97904f5619afe3dfdacb155b03e8c git.kernel.org: https://git.kernel.org/stable/c/32e3d364a7b8295120d37e6a6bd433d2de26f748 git.kernel.org: https://git.kernel.org/stable/c/4699b54fada156534cbb39834d47fc9374d7a1f5 git.kernel.org: https://git.kernel.org/stable/c/74186c2968f8f756ac3226b545b598457c910c75