In the Linux kernel, the following vulnerability has been resolved:
i2c: piix4: Fix a memory leak in the EFCH MMIO support
The recently added support for EFCH MMIO regions introduced a memory leak in that code path. The leak is caused by the fact that release_resource() merely removes the resource from the tree but does not free its memory. We need to call release_mem_region() instead, which does free the memory. As a nice side effect, this brings back some symmetry between the legacy and MMIO paths.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | Feb 27, 2025 | Feb 27, 2025 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Feb 26, 2025 |
| Ubuntu | — | Upgrade linux-intel-iotg-5.15Upgrade linux-oracle-5.15Upgrade linux-oracleUpgrade linux-azure-5.15Upgrade linux-nvidiaUpgrade linux-azureUpgrade linux-ibmUpgrade linux-riscv-5.15Upgrade linux-realtimeUpgrade linux-raspiUpgrade linux-intel-iotgUpgrade linux-lowlatencyUpgrade linux-gcp-5.15Upgrade linux-hwe-5.15Upgrade linux-gkeopUpgrade linux-lowlatency-hwe-5.15Upgrade linux-kvmUpgrade linux-gcpUpgrade linux-gkeUpgrade linuxUpgrade linux-aws-5.15Upgrade linux-aws | Mar 19, 2025 | Feb 26, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub