{"id":"CVE-2026-23024","summary":"idpf: fix memory leak of flow steer list on rmmod","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nidpf: fix memory leak of flow steer list on rmmod\n\nThe flow steering list maintains entries that are added and removed as\nethtool creates and deletes flow steering rules. Module removal with active\nentries causes memory leak as the list is not properly cleaned up.\n\nPrevent this by iterating through the remaining entries in the list and\nfreeing the associated memory during module removal. Add a spinlock\n(flow_steer_list_lock) to protect the list access from multiple threads.","modified":"2026-04-02T17:30:39.602731831Z","published":"2026-01-31T11:39:07.604Z","related":["SUSE-SU-2026:20838-1","SUSE-SU-2026:20931-1","openSUSE-SU-2026:20416-1"],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/23xxx/CVE-2026-23024.json"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/1aedff70a5e97628eaaf17b169774cb6a45a1dc5"},{"type":"WEB","url":"https://git.kernel.org/stable/c/f9841bd28b600526ca4f6713b0ca49bf7bb98452"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/23xxx/CVE-2026-23024.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-23024"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"ada3e24b84a097b27a823f1ad98e5b2e8c979689"},{"fixed":"1aedff70a5e97628eaaf17b169774cb6a45a1dc5"},{"fixed":"f9841bd28b600526ca4f6713b0ca49bf7bb98452"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-23024.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"6.17.0"},{"fixed":"6.18.6"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-23024.json"}}],"schema_version":"1.7.5"}