CVE-2026-72269

UnknownEPSS 0.21%

Last modified

CVE-2026-72269 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: fbdev: uvesafb: fix potential memory leak in uvesafb_probe() Due to an incorrect goto label, memory allocated for modedb and modelist in uvesafb_vbe_init() is not freed in some error paths. Fix this by updating the goto label.. EPSS estimates a 0.21% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: fbdev: uvesafb: fix potential memory leak in uvesafb_probe() Due to an incorrect goto label, memory allocated for modedb and modelist in uvesafb_vbe_init() is not freed in some error paths. Fix this by updating the goto label.

Metrics

EPSS Probability
0.21%

11.6th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 8bdb3a2d7df48b861972c4bfb58490853a228f51, < f413512c79c2d0012c6ed486e4025e1489e6d443; >= 8bdb3a2d7df48b861972c4bfb58490853a228f51, < 61d46d6f5dc163aa5f3548633b5f392b021620ff; >= 8bdb3a2d7df48b861972c4bfb58490853a228f51, < 81985921e14f5b471fc0ffe990826d0bda52c0cf; >= 8bdb3a2d7df48b861972c4bfb58490853a228f51, < c53fdf7ee65af1b9b4566cc437d3754ce7b47118; >= 8bdb3a2d7df48b861972c4bfb58490853a228f51, < c606c28085a3106c91c6d37bbbbf97b451d572ce; >= 8bdb3a2d7df48b861972c4bfb58490853a228f51, < 12fe6a56506ed3bf0aaf6130a29102ce1fce62da; >= 8bdb3a2d7df48b861972c4bfb58490853a228f51, < aa387a3e51808f580b51593e3c2f3d4703d91c1a; >= 8bdb3a2d7df48b861972c4bfb58490853a228f51, < 033e56fed09047ee63072e9f58789f40c1c7079d
LinuxLinux2.6.24

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-72269?
In the Linux kernel, the following vulnerability has been resolved: fbdev: uvesafb: fix potential memory leak in uvesafb_probe() Due to an incorrect goto label, memory allocated for modedb and modelist in uvesafb_vbe_init() is not freed in some error paths. Fix this by updating the goto label.
How severe is CVE-2026-72269?
Severity scoring for CVE-2026-72269 is pending analysis. The EPSS model estimates a 0.21% probability of exploitation in the next 30 days.
How do I fix CVE-2026-72269?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-72269?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST