SB2026092819 - Mismatched Memory Management Routines in Linux kernel rtl8723bs os_dep driver
Published: September 28, 2026 Updated: September 30, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Mismatched Memory Management Routines (CVE-ID: CVE-2026-98160)
CWE-ID: CWE-762 - Mismatched Memory Management Routines
CVSSv4: 2 [CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N]
The vulnerability allows a local user to cause memory corruption.
The vulnerability exists due to mismatched memory management routines in rtw_sdio_if1_init() when handling an initialization failure after allocating HalData. A local user can trigger the initialization error path to cause memory corruption.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/264676418b726baca7be49171e306b6aa05cceb0
- https://git.kernel.org/stable/c/423574feaed192063ef0cd0813fb85425f39e539
- https://git.kernel.org/stable/c/4520d673d49dabfd42c008a33889251025f7d6d5
- https://git.kernel.org/stable/c/6c017ab2b0e1b60b5be94636c94720347213d78b
- https://git.kernel.org/stable/c/737c928ff5092d7e55128a232c231248fc993777
- https://git.kernel.org/stable/c/911190f0b9511c3c81f2f2484414c1ae26f636b3
- https://git.kernel.org/stable/c/d6158333d630a1b21d8914feaf77a6f5deb185d9
- https://git.kernel.org/stable/c/ff6d1ba247b5c62bdb678f1069abc86ad88a1402