CVE-2026-23037 — Linux vulnerability
13 documents7 sources
Severity
5.5MEDIUM
No vectorEPSS
0.0%
top 95.11%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 31
Latest updateApr 17
Description
In the Linux kernel, the following vulnerability has been resolved:
can: etas_es58x: allow partial RX URB allocation to succeed
When es58x_alloc_rx_urbs() fails to allocate the requested number of
URBs but succeeds in allocating some, it returns an error code.
This causes es58x_open() to return early, skipping the cleanup label
'free_urbs', which leads to the anchored URBs being leaked.
As pointed out by maintainer Vincent Mailhol, the driver is designed
to handle partial URB allocation grace…
Affected Packages12 packages
▶CVEListV5linux/linux8537257874e949a59c834cecfd5a063e11b64b0b — 97250eb05e4b6afe787290e8fd97d0675116c61b+6
🔴Vulnerability Details
3GHSA▶
GHSA-35c8-wvgc-32mg: In the Linux kernel, the following vulnerability has been resolved:
can: etas_es58x: allow partial RX URB allocation to succeed
When es58x_alloc_rx_↗2026-01-31
OSV▶
CVE-2026-23037: In the Linux kernel, the following vulnerability has been resolved: can: etas_es58x: allow partial RX URB allocation to succeed When es58x_alloc_rx_ur↗2026-01-31