CVE-2026-63839

Description

A flaw was found in the Linux kernel's Lenovo WMI (Windows Management Instrumentation) helpers. The lwmi_dev_evaluate_int() function was identified to have a memory leak, where allocated memory was not properly released under certain conditions. This could lead to a gradual consumption of system memory, potentially impacting system stability or performance over extended periods.

Understanding the Weakness (CWE)

Availability

Technical Impact: DoS: Resource Consumption (Other); DoS: Resource Consumption (Memory); DoS: Resource Consumption (CPU)

An attacker that can influence the allocation of resources that are not properly released could deplete the available resource pool and prevent all other processes from accessing the same type of resource. Frequently-affected resources include memory, CPU, disk space, power or battery, etc.

Frequently Asked Questions

Want to get errata notifications? Sign up here.