CVE-2026-31658
MEDIUMnet: altera-tse: fix skb leak on DMA mapping error in tse_start_xmit()
Title source: cnaDescription
In the Linux kernel, the following vulnerability has been resolved: net: altera-tse: fix skb leak on DMA mapping error in tse_start_xmit() When dma_map_single() fails in tse_start_xmit(), the function returns NETDEV_TX_OK without freeing the skb. Since NETDEV_TX_OK tells the stack the packet was consumed, the skb is never freed, leaking memory on every DMA mapping failure. Add dev_kfree_skb_any() before returning to properly free the skb.
References (10)
Core 10
Core References
Vendor Advisory
https://cert-portal.siemens.com/productcert/html/ssa-019113.html
Vendor Advisory
https://cert-portal.siemens.com/productcert/html/ssa-082556.html
Scores
CVSS v3
5.5
EPSS
0.0012
EPSS Percentile
2.1%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Details
CWE
CWE-401
Status
published
Products (28)
linux/Kernel
3.15.0 - 5.10.253linux
linux/Kernel
5.11.0 - 5.15.203linux
linux/Kernel
5.16.0 - 6.1.169linux
linux/Kernel
6.13.0 - 6.18.23linux
linux/Kernel
6.19.0 - 6.19.13linux
linux/Kernel
6.2.0 - 6.6.135linux
linux/Kernel
6.7.0 - 6.12.82linux
Linux/Linux
< 3.15
Linux/Linux
3.15
Linux/Linux
5.10.253 - 5.10.*
... and 18 more
Published
Apr 24, 2026
Tracked Since
Apr 24, 2026