VYPR
Medium severity5.5NVD Advisory· Published Jun 25, 2026· Updated Jul 2, 2026

CVE-2026-53213

CVE-2026-53213

Description

In the Linux kernel, the following vulnerability has been resolved:

drm/vc4: fix krealloc() memory leak

Don't just overwrite the original pointer passed to krealloc() with its return value without checking latter:

MEM = krealloc(MEM, SZ, GFP);

If krealloc() returns NULL, that erases the pointer to the still allocated memory, hence leaks this memory. Instead, use a temporary variable, check it's not NULL and only then assign it to the original pointer:

TMP = krealloc(MEM, SZ, GFP); if (!TMP) return; MEM = TMP;

While on it, use krealloc_array().

Affected products

23

Patches

Vulnerability mechanics

References

7

News mentions

0

No linked articles in our index yet.