CVE-2026-72264

UnknownEPSS 0.21%

Last modified

CVE-2026-72264 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: fbdev: tridentfb: fix potential memory leak in trident_pci_probe() In trident_pci_probe(), the memory allocated for modelist using fb_videomode_to_modelist() is not freed in subsequent error paths. Fix that by calling fb_destroy_modelist().. EPSS estimates a 0.21% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: fbdev: tridentfb: fix potential memory leak in trident_pci_probe() In trident_pci_probe(), the memory allocated for modelist using fb_videomode_to_modelist() is not freed in subsequent error paths. Fix that by calling fb_destroy_modelist().

Metrics

EPSS Probability
0.21%

11.6th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 6a5e3bd0c8bc1025bb5092f54d5aea38216c665e, < 868432039a3fd7c2c0d515e48f33d5e43391666c; >= 6a5e3bd0c8bc1025bb5092f54d5aea38216c665e, < 089d149ccd7c3ac3d5e14ac65e558dcd9ec27583; >= 6a5e3bd0c8bc1025bb5092f54d5aea38216c665e, < de9cf16e39c0378716e9764fc0fbb6d4b45a1ee1; >= 6a5e3bd0c8bc1025bb5092f54d5aea38216c665e, < 8d16e5bc78478176621cac0f4c381136d3c92c5f; >= 6a5e3bd0c8bc1025bb5092f54d5aea38216c665e, < 5bdb6f11ad0398b11a3ae4d9104035f9dc628cdc; >= 6a5e3bd0c8bc1025bb5092f54d5aea38216c665e, < 4ebe2c3a7db6332aab3655f8c552ca387c1dc199; >= 6a5e3bd0c8bc1025bb5092f54d5aea38216c665e, < 2efd9797331a559b93ab888f451838f87bd6dfa3; >= 6a5e3bd0c8bc1025bb5092f54d5aea38216c665e, < 7a35ec619d9af8ee128320975c1252b8ad65f1e8
LinuxLinux4.4

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-72264?
In the Linux kernel, the following vulnerability has been resolved: fbdev: tridentfb: fix potential memory leak in trident_pci_probe() In trident_pci_probe(), the memory allocated for modelist using fb_videomode_to_modelist() is not freed in subsequent error paths. Fix that by calling fb_destroy_modelist().
How severe is CVE-2026-72264?
Severity scoring for CVE-2026-72264 is pending analysis. The EPSS model estimates a 0.21% probability of exploitation in the next 30 days.
How do I fix CVE-2026-72264?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-72264?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST