๐Ÿ” CVE Alert

CVE-2026-98160

UNKNOWN 0.0

staging: rtl8723bs: fix mismatched free of HalData in rtw_sdio_if1_init()

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: fix mismatched free of HalData in rtw_sdio_if1_init() padapter->HalData is allocated via vzalloc(), but incorrectly freed using kfree() in the rtw_sdio_if1_init() error path. Using kfree() to release this vmalloc-backed buffer can lead to memory corruption. Use rtw_hal_data_deinit() to pair the free correctly and free HalData with vfree(). The bug was first flagged by an experimental static analysis tool we are developing for kernel memory-management bugs. Manual inspection confirms that the issue is still present in current mainline. An x86_64 allyesconfig build showed no new warnings. As we do not have suitable RTL8723BS SDIO hardware to test with, no runtime testing was able to be performed.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 25, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
554c0a3abf216c991c5ebddcdb2c08689ecd290b < ff6d1ba247b5c62bdb678f1069abc86ad88a1402 554c0a3abf216c991c5ebddcdb2c08689ecd290b < d6158333d630a1b21d8914feaf77a6f5deb185d9 554c0a3abf216c991c5ebddcdb2c08689ecd290b < 6c017ab2b0e1b60b5be94636c94720347213d78b 554c0a3abf216c991c5ebddcdb2c08689ecd290b < 4520d673d49dabfd42c008a33889251025f7d6d5 554c0a3abf216c991c5ebddcdb2c08689ecd290b < 423574feaed192063ef0cd0813fb85425f39e539 554c0a3abf216c991c5ebddcdb2c08689ecd290b < 737c928ff5092d7e55128a232c231248fc993777 554c0a3abf216c991c5ebddcdb2c08689ecd290b < 911190f0b9511c3c81f2f2484414c1ae26f636b3 554c0a3abf216c991c5ebddcdb2c08689ecd290b < 264676418b726baca7be49171e306b6aa05cceb0
Linux / Linux
4.12

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/ff6d1ba247b5c62bdb678f1069abc86ad88a1402 git.kernel.org: https://git.kernel.org/stable/c/d6158333d630a1b21d8914feaf77a6f5deb185d9 git.kernel.org: https://git.kernel.org/stable/c/6c017ab2b0e1b60b5be94636c94720347213d78b git.kernel.org: https://git.kernel.org/stable/c/4520d673d49dabfd42c008a33889251025f7d6d5 git.kernel.org: https://git.kernel.org/stable/c/423574feaed192063ef0cd0813fb85425f39e539 git.kernel.org: https://git.kernel.org/stable/c/737c928ff5092d7e55128a232c231248fc993777 git.kernel.org: https://git.kernel.org/stable/c/911190f0b9511c3c81f2f2484414c1ae26f636b3 git.kernel.org: https://git.kernel.org/stable/c/264676418b726baca7be49171e306b6aa05cceb0