In the Linux kernel, the following vulnerability has been resolved:
crypto: hisilicon/hpre - fix resource leak in remove process
In hpre_remove(), when the disable operation of qm sriov failed, the following logic should continue to be executed to release the remaining resources that have been allocated, instead of returning directly, otherwise there will be resource leakage.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | Oct 3, 2025 | Oct 3, 2025 |
| Huawei Euleros 2_0_sp13 | — | Upgrade kernel-abi-stablelistsUpgrade kernel-toolsUpgrade kernel-tools-libsUpgrade bpftoolUpgrade kernelUpgrade python3-perf | Mar 10, 2026 | Mar 10, 2026 |
| Ubuntu | — | Upgrade linux-gcpUpgrade linux-azure-fde-5.15Upgrade linux-gkeopUpgrade linux-azure-5.15Upgrade linux-kvmUpgrade linux-ibmUpgrade linuxUpgrade linux-nvidiaUpgrade linux-gcp-5.15Upgrade linux-intel-iotgUpgrade linux-intel-iot-realtimeUpgrade linux-oracleUpgrade linux-intel-iotg-5.15Upgrade linux-oracle-5.15Upgrade linux-hwe-5.15Upgrade linux-bluefieldUpgrade linux-aws-5.15Upgrade linux-lowlatency-hwe-5.15Upgrade linux-raspiUpgrade linux-riscv-5.15Upgrade linux-awsUpgrade linux-gkeUpgrade linux-lowlatencyUpgrade linux-nvidia-tegra-5.15Upgrade linux-azureUpgrade linux-realtime | Oct 10, 2025 | Oct 1, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub