In the Linux kernel, the following vulnerability has been resolved:
selinux: fix memleak in security_read_state_kernel()
In this function, it directly returns the result of __security_read_policy without freeing the allocated memory in *data, cause memory leak issue, so free the memory if __security_read_policy failed.
[PM: subject line tweak]
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon Linux Ami 2 | — | Upgrade kernel-debuginfo-common-x86_64Upgrade python-perfUpgrade kernel-tools-develUpgrade kernel-toolsUpgrade bpftoolUpgrade kernel-livepatch-5.15.69-37.134Upgrade kernelUpgrade kernel-debuginfo-common-aarch64Upgrade kernel-tools-debuginfoUpgrade kernel-develUpgrade perfUpgrade kernel-debuginfoUpgrade python-perf-debuginfoUpgrade kernel-headersUpgrade bpftool-debuginfoUpgrade perf-debuginfo | May 20, 2026 | May 20, 2026 |
| Debian | — | Upgrade linux | Jun 20, 2025 | Jun 20, 2025 |
| Dell Powerstore Dsa2025429 | — | Upgrade Dell PowerStoreOS to the latest version | Dec 3, 2025 | Dec 2, 2025 |
| Dell Powerstore Dsa2026039 | — | Upgrade Dell PowerStoreOS to the latest version | Jan 13, 2026 | Jan 6, 2026 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Jun 18, 2025 |
| Ubuntu | — | Upgrade linuxUpgrade linux-hwe-5.15Upgrade linux-intel-iotg-5.15Upgrade linux-awsUpgrade linux-lowlatency-hwe-5.15Upgrade linux-azureUpgrade linux-riscv-5.15Upgrade linux-azure-fde-5.15Upgrade linux-gkeopUpgrade linux-gcp-5.15Upgrade linux-gcpUpgrade linux-kvmUpgrade linux-azure-5.15Upgrade linux-nvidiaUpgrade linux-lowlatencyUpgrade linux-oracleUpgrade linux-raspiUpgrade linux-ibmUpgrade linux-oracle-5.15Upgrade linux-aws-5.15Upgrade linux-gkeUpgrade linux-intel-iotgUpgrade linux-realtime | Jun 26, 2025 | Jun 18, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub