In the Linux kernel, the following vulnerability has been resolved:
pinctrl: pinconf-generic: Fix memory leak in pinconf_generic_parse_dt_config()
In pinconf_generic_parse_dt_config(), if parse_dt_cfg() fails, it returns
directly. This bypasses the cleanup logic and results in a memory leak of
the cfg buffer.
Fix this by jumping to the out label on failure, ensuring kfree(cfg) is
called before returning.
CVE-2026-23337
NONE
EPSS 0.02%
Updated Mar 25, 2026
Linux
CVE Details
CVE ID
CVE-2026-23337
Published Date
Mar 25, 2026
Vendor
Linux
Severity
NONE
Exploit Prediction (EPSS)
Probability of Exploit
0.02%
Likelihood of exploitation in next 30 days
Percentile:
6.5th percentile (higher than 6.5% of all CVEs)
Standard patching cycle
Impact
Minimal impact
Source
View Advisory