CVE-2026-72437
Published: August 18, 2026Last modified: August 18, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: md/raid1: free r1_bio when REQ_NOWAIT is set and read would block on retry When a read is retried, raid1_read_request() may be called with a pre-allocated r1_bio. If wait_read_barrier() fails for a REQ_NOWAIT read, the bio is completed and the function returns immediately. In this case the existing r1_bio is leaked. This fixes a leak of pre-allocated r1_bio structures for retried reads.
Status
| Product | Release | Package | Status |
|---|---|---|---|
| Alpaquita Linux | 23 LTS | linux-lts | Fixed (6.1.182-r0) |
| 25 LTS | linux-lts | Fixed (6.12.103-r0) | |
| Stream | linux-lts | Fixed (6.18.43-r0) |
References
- https://git.kernel.org/stable/c/69ad6ce47f9bf2b9fe0ed69b042db993d33bbf12
- https://git.kernel.org/stable/c/6d92dbd73d19a0622f60352ce9d9379f7a760112
- https://git.kernel.org/stable/c/c66ed3e6371f5dba8f5d8ab810d6683ddc99201e
- https://git.kernel.org/stable/c/c6e6354295845698d2fdfa20b71fc404786f7e93
- https://git.kernel.org/stable/c/d1eda529a4bf6b866d02755723ee0eb1f037a5ed
- https://git.kernel.org/stable/c/db58075bc9c2ad2731f9c063859b47104bc2e7ef