NONE · 0

CVE-2026-68135

In the Linux kernel, the following vulnerability has been resolved: net: hip04: fix RX buffer leak on build_skb failure When build_skb() fails in hip04_rx_poll(), the driver jumps to the refill path...

Vulnerability Description

In the Linux kernel, the following vulnerability has been resolved: net: hip04: fix RX buffer leak on build_skb failure When build_skb() fails in hip04_rx_poll(), the driver jumps to the refill path without releasing the current RX buffer and its DMA mapping. Installing a replacement buffer then overwrites the slot references and leaks both resources. Keep the current slot intact and return budget so NAPI retries the same buffer. Also free a newly allocated RX fragment when dma_map_single() fails. This issue was found by an in-house static analysis tool.

References

FAQ

What is CVE-2026-68135?

CVE-2026-68135 is a documented vulnerability. In the Linux kernel, the following vulnerability has been resolved: net: hip04: fix RX buffer leak on build_skb failure When build_skb() fails in hip04_rx_poll(), the driver jumps to the refill path...

How severe is CVE-2026-68135?

CVSS scoring is not yet available for CVE-2026-68135. Check NVD for updates.

Is there a patch for CVE-2026-68135?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.