Linux Kernel Resource Leak Vulnerability in Hisilicon HPRE Crypto Driver

Vulnerability

A resource leak vulnerability has been identified in the Hisilicon HPRE crypto driver of the Linux kernel. The issue arises in the 'hpre_remove()' function, where the removal process fails to properly release allocated resources if the SR-IOV disable operation encounters an error. This oversight can lead to resource leakage.

Impact

The vulnerability causes a resource leak, which can lead to increased memory usage and potential exhaustion of system resources.

Remediation

Users can apply the latest patches available in the Linux kernel stable tree to address this vulnerability.

Added: Oct 1, 2025, 1:18 PM
Updated: Oct 1, 2025, 1:18 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
0.0
exploitability
5.3
remediation
7.7
relevance
0.6
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.