Home

Description

In the Linux kernel, the following vulnerability has been resolved: KEYS: trusted: Fix a memory leak in tpm2_load_cmd 'tpm2_load_cmd' allocates a tempoary blob indirectly via 'tpm2_key_decode' but it is not freed in the failure paths. Address this by wrapping the blob into with a cleanup helper.

PUBLISHED Reserved 2026-01-13 | Published 2026-01-23 | Updated 2026-02-09 | Assigner Linux

Product status

Default status
unaffected

f2219745250f388edacabe6cca73654131c67d0a (git) before 3fd7df4636d8fd5e3592371967a5941204368936
affected

f2219745250f388edacabe6cca73654131c67d0a (git) before af0689cafb127a8d1af78cc8b72585c9b2a19ecd
affected

f2219745250f388edacabe6cca73654131c67d0a (git) before 19166de9737218b77122c41a5730ac87025e089f
affected

f2219745250f388edacabe6cca73654131c67d0a (git) before 9b015f2918b95bdde2ca9cefa10ef02b138aae1e
affected

f2219745250f388edacabe6cca73654131c67d0a (git) before 9e7c63c69f57b1db1a8a1542359a6167ff8fcef1
affected

f2219745250f388edacabe6cca73654131c67d0a (git) before 62cd5d480b9762ce70d720a81fa5b373052ae05f
affected

Default status
affected

5.13
affected

Any version before 5.13
unaffected

5.15.198 (semver)
unaffected

6.1.160 (semver)
unaffected

6.6.120 (semver)
unaffected

6.12.64 (semver)
unaffected

6.18.3 (semver)
unaffected

6.19 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/3fd7df4636d8fd5e3592371967a5941204368936

git.kernel.org/...c/af0689cafb127a8d1af78cc8b72585c9b2a19ecd

git.kernel.org/...c/19166de9737218b77122c41a5730ac87025e089f

git.kernel.org/...c/9b015f2918b95bdde2ca9cefa10ef02b138aae1e

git.kernel.org/...c/9e7c63c69f57b1db1a8a1542359a6167ff8fcef1

git.kernel.org/...c/62cd5d480b9762ce70d720a81fa5b373052ae05f

cve.org (CVE-2025-71147)

nvd.nist.gov (CVE-2025-71147)

Download JSON