Linux Kernel RapidIO Network Memory Management Vulnerability

Vulnerability

A vulnerability in the Linux kernel's RapidIO subsystem has been addressed. The issue arose because the return value of the function 'rio_add_net()' was not properly checked in 'rio_scan_alloc_net()'. This oversight could lead to memory management problems, as failed operations were not freeing allocated resources or releasing device references.

Impact

The vulnerability could cause memory leaks or improper resource management by failing to release device references and allocated memory when 'rio_add_net()' encounters an error.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
5.3
remediation
0.0
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.