Back

svxlink: svxlink: Unbounded resource exhaustion via connection object leak in NetUplink

Published Jul 21, 2026

Description

A flaw was found in svxlink's remotetrx NetUplink component. When a server initiates a disconnect, the associated connection object is not properly freed, causing a memory leak. A remote attacker can repeatedly trigger disconnects to cause unbounded memory growth, leading to a denial of service.

Affected products

Remediation

Red Hat statement

svxlink is not shipped in any Red Hat Enterprise product. It is available in Fedora as a community-maintained package.

Red Hat mitigation

Update svxlink to version 26.05.1 or later.

Weaknesses (1)

References (5)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Published Jul 21, 2026

CISA Vulnrichment

No data

NVD

No data

Red Hat

Severity Important
Public date Jul 21, 2026
Bugzilla 2513797

ENISA EUVD

No data

GitHub

No data