Home

Description

In the Linux kernel, the following vulnerability has been resolved: af_unix: Fix memleak of newsk in unix_stream_connect(). When prepare_peercred() fails in unix_stream_connect(), unix_release_sock() is not called for newsk, and the memory is leaked. Let's move prepare_peercred() before unix_create1().

PUBLISHED Reserved 2026-05-13 | Published 2026-05-27 | Updated 2026-05-27 | Assigner Linux

Product status

Default status
unaffected

fd0a109a0f6b7524543d17520da92a44a9f5343c (git) before 365996a2b14d07caa9e33d367b67ea26c09d89b4
affected

fd0a109a0f6b7524543d17520da92a44a9f5343c (git) before a5d95d7caba0160fb7b2b8d2bd96d5a1be861d9f
affected

fd0a109a0f6b7524543d17520da92a44a9f5343c (git) before 6884028cd7f275f8bcb854a347265cb1fb0e4bea
affected

Default status
affected

6.16
affected

Any version before 6.16
unaffected

6.18.14 (semver)
unaffected

6.19.4 (semver)
unaffected

7.0 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/365996a2b14d07caa9e33d367b67ea26c09d89b4

git.kernel.org/...c/a5d95d7caba0160fb7b2b8d2bd96d5a1be861d9f

git.kernel.org/...c/6884028cd7f275f8bcb854a347265cb1fb0e4bea

cve.org (CVE-2026-45887)

nvd.nist.gov (CVE-2026-45887)

Download JSON