CVE-2026-72216

UnknownEPSS 0.20%

Last modified

CVE-2026-72216 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: remoteproc: qcom: Fix leak when custom dump_segments addition fails Free allocated minidump_region 'name' in qcom_add_minidump_segments() when failing before adding the region to 'dump_segments'. Otherwise, the 'name' is not tracked and is never freed by qcom_minidump_cleanup(). Return error when adding to 'dump_segments' fails.. EPSS estimates a 0.20% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: remoteproc: qcom: Fix leak when custom dump_segments addition fails Free allocated minidump_region 'name' in qcom_add_minidump_segments() when failing before adding the region to 'dump_segments'. Otherwise, the 'name' is not tracked and is never freed by qcom_minidump_cleanup(). Return error when adding to 'dump_segments' fails.

Metrics

EPSS Probability
0.20%

10.2th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 8ed8485c4f056d488d17a2b56581c86aeb42955d, < 65104d6eb43f066dcf73ca9ade6478824b17d867; >= 8ed8485c4f056d488d17a2b56581c86aeb42955d, < 381c8a7a59da06293951c343857f4a2465b2c655; >= 8ed8485c4f056d488d17a2b56581c86aeb42955d, < 51aad3d89a2dd2bd34713785b0f2fd5177eb33b6; >= 8ed8485c4f056d488d17a2b56581c86aeb42955d, < e5b1aaa74118e91f0c0f18b22b6f853199873db4; >= 8ed8485c4f056d488d17a2b56581c86aeb42955d, < ecf9fc18e62c58eae1ceb65dab2bccb8a724de2d
LinuxLinux5.11

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-72216?
In the Linux kernel, the following vulnerability has been resolved: remoteproc: qcom: Fix leak when custom dump_segments addition fails Free allocated minidump_region 'name' in qcom_add_minidump_segments() when failing before adding the region to 'dump_segments'. Otherwise, the 'name' is not tracked and is never freed by qcom_minidump_cleanup(). Return error when adding to 'dump_segments' fails.
How severe is CVE-2026-72216?
Severity scoring for CVE-2026-72216 is pending analysis. The EPSS model estimates a 0.20% probability of exploitation in the next 30 days.
How do I fix CVE-2026-72216?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-72216?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST