PT-2026-39093 · Linux · Linux Kernel

Published

2026-05-08

·

Updated

2026-05-15

·

CVE-2026-43432

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A memory leak exists in the xhci disable slot() function. The xhci alloc command() function allocates a command structure and, in certain cases, a completion structure. The error handling path in xhci disable slot() incorrectly uses kfree() to release only the command structure, leaving the completion structure allocated in memory.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Leak

Weakness Enumeration

Related Identifiers

CVE-2026-43432

Affected Products

Linux Kernel