CVE-2026-23033

UnknownEPSS 0.20%

Last modified

CVE-2026-23033 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: dmaengine: omap-dma: fix dma_pool resource leak in error paths The dma_pool created by dma_pool_create() is not destroyed when dma_async_device_register() or of_dma_controller_register() fails, causing a resource leak in the probe error paths. Add dma_pool_destroy() in both error paths to properly release the allocated dma_pool resource.. EPSS estimates a 0.20% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: dmaengine: omap-dma: fix dma_pool resource leak in error paths The dma_pool created by dma_pool_create() is not destroyed when dma_async_device_register() or of_dma_controller_register() fails, causing a resource leak in the probe error paths. Add dma_pool_destroy() in both error paths to properly release the allocated dma_pool resource.

Metrics

EPSS Probability
0.20%

10.2th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 7bedaa5537604f34d1d63c5ec7891e559d2a61ed, < 8d66cb05b8b76396387a7b3a91f9284225c87f04; >= 7bedaa5537604f34d1d63c5ec7891e559d2a61ed, < 2b29f38f4f9660595e8272b8e8b82ffcca7ce592; >= 7bedaa5537604f34d1d63c5ec7891e559d2a61ed, < 6b867a98699657c2a698bbc9e60656349b39b905; >= 7bedaa5537604f34d1d63c5ec7891e559d2a61ed, < 88a9483f093bbb9263dcf21bc7fdb5132e5de88d; >= 7bedaa5537604f34d1d63c5ec7891e559d2a61ed, < 4b93712e96be17029bd22787f2e39feb0e73272c; >= 7bedaa5537604f34d1d63c5ec7891e559d2a61ed, < 829b00481734dd54e72f755fd6584bce6fbffbb0; >= 7bedaa5537604f34d1d63c5ec7891e559d2a61ed, < 2e1136acf8a8887c29f52e35a77b537309af321f
LinuxLinux3.6

References

Timeline

Published
Last Modified
Status
Deferred

Frequently Asked Questions

What is CVE-2026-23033?
In the Linux kernel, the following vulnerability has been resolved: dmaengine: omap-dma: fix dma_pool resource leak in error paths The dma_pool created by dma_pool_create() is not destroyed when dma_async_device_register() or of_dma_controller_register() fails, causing a resource leak in the probe error paths. Add dma_pool_destroy() in both error paths to properly release the allocated dma_pool resource.
How severe is CVE-2026-23033?
Severity scoring for CVE-2026-23033 is pending analysis. The EPSS model estimates a 0.20% probability of exploitation in the next 30 days.
How do I fix CVE-2026-23033?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-23033?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST