CVE-2026-97473 is a vulnerability in Linux Kernel
Published on September 24, 2026
powercap: intel_rapl: Fix memory leak in rapl_add_package_cpuslocked()
In the Linux kernel, the following vulnerability has been resolved:
powercap: intel_rapl: Fix memory leak in rapl_add_package_cpuslocked()
When topology_physical_package_id()/topology_logical_die_id() returns
a negative value, rapl_add_package_cpuslocked() returns ERR_PTR(-EINVAL)
directly without freeing the rapl_package structure that was just
allocated by kzalloc_obj(), leaking memory on every failed package
addition.
Use the existing err_free_package label so that the allocation is
released on the error path.
Products Associated with CVE-2026-97473
Want to know whenever a new CVE is published for Linux Kernel? stack.watch will email you.
Affected Versions
Linux:- Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 and below 3e9e9337e03be946ec93f2c9d28dab242482be1b is affected.
- Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 and below 992c60771749d8d8cbfbd06049785fff95c72df1 is affected.
- Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 and below bfc7d93bc5e12288e5dc6bb54260f68cdf5a5c47 is affected.
- Before 6.12.111 is affected.
- Before 6.18.53 is affected.
- Version 6.12.111, <= 6.12.* is unaffected.
- Version 6.18.53, <= 6.18.* is unaffected.
- Version 7.2, <= * is unaffected.