← All Advisories

CVE-2026-97440

Last refreshed2026-10-03

Status: UPDATED  |  Advisory ID: CVE-2026-97440

Key Details

CVECVE-2026-97440
Affected productsLinux Linux

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
LinuxLinux
SubsystemsGeneral OT
SectorsMultiple

What to Know

In the Linux kernel, the following vulnerability has been resolved:

net: qrtr: fix node refcount leak on ctrl packet alloc failure

qrtr_send_resume_tx() calls qrtr_node_lookup() which takes a

reference on the returned node. If the subsequent call to

qrtr_alloc_ctrl_packet() fails due to memory allocation failure, the

function returns -ENOMEM without calling qrtr_node_release() to

release the node reference.

Add qrtr_node_release(node) before returning on the allocation failure

path to properly release the reference. (NVD)

What to Do

Monitor Linux's web page for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-97440
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-97440