{"id":"CVE-2026-72219","summary":"lockd: Plug nlm_file leak when nlm_do_fopen() fails","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nlockd: Plug nlm_file leak when nlm_do_fopen() fails\n\nA client can repeatedly drive nlm_do_fopen() failures by presenting\nfile handles that the underlying export rejects. After kzalloc_obj()\nsucceeds in nlm_lookup_file(), the freshly allocated nlm_file is not\nyet inserted into nlm_files[]. The nlm_do_fopen() failure path jumps\nto out_unlock, which releases nlm_file_mutex and returns without\nfreeing the allocation, so each failure leaks one nlm_file.\n\nRoute the failure through out_free so kfree() runs before the\nfunction returns.","modified":"2026-08-18T03:31:02.804649952Z","published":"2026-08-15T05:54:13.067Z","database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72219.json"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/1161c4b5bd0048c8148e919f818a33cff3623ef0"},{"type":"WEB","url":"https://git.kernel.org/stable/c/1403f1221a35a6caf959bb7bf005741f17263c66"},{"type":"WEB","url":"https://git.kernel.org/stable/c/39f59bf67231ed2eb0cdf6337194360e964b609a"},{"type":"WEB","url":"https://git.kernel.org/stable/c/3f2dc01b9cb516d4727a3b9263ee58c71ca00ba9"},{"type":"WEB","url":"https://git.kernel.org/stable/c/bca74fff138429f3d5802865f38fc883d53a4f1a"},{"type":"WEB","url":"https://git.kernel.org/stable/c/d7c677feb3aa1f42b1026d75a8ea61338b51e4fb"},{"type":"WEB","url":"https://git.kernel.org/stable/c/ddfbd816273b4e9c9b836f5b8773664c6f40f807"},{"type":"WEB","url":"https://git.kernel.org/stable/c/f16a1513452edb532fec81e591c64c320866719c"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72219.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-72219"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"e580323ac0b51ad10ec2e181d1f777479b7983e7"},{"fixed":"bca74fff138429f3d5802865f38fc883d53a4f1a"}]},{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"7f024fcd5c97dc70bb9121c80407cf3cf9be7159"},{"fixed":"d7c677feb3aa1f42b1026d75a8ea61338b51e4fb"},{"fixed":"39f59bf67231ed2eb0cdf6337194360e964b609a"},{"fixed":"ddfbd816273b4e9c9b836f5b8773664c6f40f807"},{"fixed":"1403f1221a35a6caf959bb7bf005741f17263c66"},{"fixed":"1161c4b5bd0048c8148e919f818a33cff3623ef0"},{"fixed":"3f2dc01b9cb516d4727a3b9263ee58c71ca00ba9"},{"fixed":"f16a1513452edb532fec81e591c64c320866719c"}]},{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"5.10.220"},{"fixed":"5.10.261"}]}],"versions":["v5.10.260","v5.10.259","v5.10.258","v5.10.257","v5.10.256","v5.10.255","v5.10.254","v5.10.253","v5.10.252","v5.10.251","v5.10.250","v5.10.249","v5.10.248","v5.10.247","v5.10.246","v5.10.245","v5.10.244","v5.10.243","v5.10.242","v5.10.241","v5.10.240","v5.10.239","v5.10.238","v5.10.237","v5.10.236","v5.10.235","v5.10.234","v5.10.233","v5.10.232","v5.10.231","v5.10.230","v5.10.229","v5.10.228","v5.10.227","v5.10.226","v5.10.225","v5.10.224","v5.10.223","v5.10.222","v5.10.221","v5.10.220"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72219.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.10.261"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.212"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.15.0"},{"fixed":"6.1.178"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.6.145"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.12.97"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.18.40"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"7.1.5"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72219.json"}}],"schema_version":"1.9.0"}