CVE-2026-68468

Updated on 15 Aug 2026

Severity

Awaiting Analysis

Details

Overview

About vulnerability

In the Linux kernel, the following vulnerability has been resolved:

mtd: virt-concat: free duplicate generated name

Every MTD registration runs mtd_virt_concat_create_join(). Once a virtual concat has already been registered, the function builds the same name again and takes the equal-name branch. That branch skips to the next item without freeing the newly allocated string.

Free the temporary name before continuing.

Details

Affected product:
Debian 10 ELS
Affected packages:
linux @ 4.19.0

Fixes