{"id":"CVE-2026-72461","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-72461","summary":"apparmor: fix refcount leak when updating the sk_ctx","details":"In the Linux kernel, the following vulnerability has been resolved:\n\napparmor: fix refcount leak when updating the sk_ctx\n\nCurrently update_sk_ctx() transfers the plabel reference, unfortunately\nit is also unconditionally put in the caller. Ideally we would make\nthe caller conditionally put the reference based on whether it was\ntransferred but for now just fix the bug by getting a reference.","published":"2026-08-15T05:57:06.042Z","modified":"2026-08-18T03:56:26.355585851Z","cvss":{"score":7.8,"severity":"HIGH","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"},"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[{"ecosystem":"Linux","name":"Kernel","fixedVersion":"6.18.40"}],"fix":null,"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/045dbe89ac31709abd73390d0805d52fece7ef39"},{"type":"WEB","url":"https://git.kernel.org/stable/c/6d25e7b47616cb2db43351210929c8f19dc305a3"},{"type":"WEB","url":"https://git.kernel.org/stable/c/b8642f1478982a97ca2eb59f70f631a9de42ae11"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72461.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-72461"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-18T03:56:26.355585851Z"}}