Description
In the Linux kernel, the following vulnerability has been resolved: regmap: maple: free entry on mas_store_gfp() failure regcache_maple_write() allocates a new block ('entry') to merge adjacent ranges and then stores it with mas_store_gfp(). When mas_store_gfp() fails, the new 'entry' remains allocated and is never freed, leaking memory. Free 'entry' on the failure path; on success continue freeing the replaced neighbor blocks ('lower', 'upper').
Product status
f033c26de5a5734625d2dd1dc196745fae186f1b (git) before d61171cf097156030142643942c217759a9cc806
f033c26de5a5734625d2dd1dc196745fae186f1b (git) before 811b45e2d795d955bb7fd9c816b40036f4fde350
f033c26de5a5734625d2dd1dc196745fae186f1b (git) before f08f2d2907675926ac5657b25f86d921f269602a
f033c26de5a5734625d2dd1dc196745fae186f1b (git) before f3f380ce6b3d5c9805c7e0b3d5bc28d9ec41e2e8
6.4
Any version before 6.4
6.6.124 (semver)
6.12.70 (semver)
6.18.10 (semver)
6.19 (original_commit_for_fix)
References
git.kernel.org/...c/d61171cf097156030142643942c217759a9cc806
git.kernel.org/...c/811b45e2d795d955bb7fd9c816b40036f4fde350
git.kernel.org/...c/f08f2d2907675926ac5657b25f86d921f269602a
git.kernel.org/...c/f3f380ce6b3d5c9805c7e0b3d5bc28d9ec41e2e8