Answer in brief
CVE-2026-92519 records a Unknown severity vulnerability in riscv, bpf: Fix memory leak in bpf_jit_free. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=48a8f78c50bd6f7f08fd40daa62252fd043f2f18 <b594c23f584ab032a5eae809eee81b809dd27330 || >=48a8f78c50bd6f7f08fd40daa62252fd043f2f18 <5cadc66b534fe8140441916200a20c7efb06a388 || >=48a8f78c50bd6f7f08fd40daa62252fd043f2f18 <2a3a29e90021806ea00527f6458cfd2edb58b42a || >=48a8f78c50bd6f7f08fd40daa62252fd043f2f18 <369e4635d04801f394d5bd42556f21029e95ff93 | b594c23f584ab032a5eae809eee81b809dd27330, 5cadc66b534fe8140441916200a20c7efb06a388, 2a3a29e90021806ea00527f6458cfd2edb58b42a, 369e4635d04801f394d5bd42556f21029e95ff93 |
| Linux/Linuxgeneric | 6.6 | Not reported |
Published upstream
Sep 17, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Sep 17, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Sep 17, 2026
In the Linux kernel, the following vulnerability has been resolved: riscv, bpf: Fix memory leak in bpf_jit_free When bpf_int_jit_compile() is called for subprograms, it returns early during the first pass (!prog->is_func || extra_pass is false), keeping ctx->offset alive for the subsequent extra pass. If JIT compilation fails for a later subprogram, the BPF core aborts and calls bpf_jit_free() to clean up the first subprogram. However, bpf_jit_free() fails to free jit_data->ctx.offset, which causes a memory leak of the JIT context offsets array. Fix this by adding the missing kfree(jit_data->ctx.offset) in bpf_jit_free().
Quoted source text, attributed separately from HOL analysis.