CVE-2026-72274

UnknownEPSS 0.21%

Last modified

CVE-2026-72274 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: fbdev: hecubafb: fix potential memory leak in hecubafb_probe() The memory allocated for pagerefs in fb_deferred_io_init() is not freed on the error path. Fix it by calling fb_deferred_io_cleanup().. EPSS estimates a 0.21% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: fbdev: hecubafb: fix potential memory leak in hecubafb_probe() The memory allocated for pagerefs in fb_deferred_io_init() is not freed on the error path. Fix it by calling fb_deferred_io_cleanup().

Metrics

EPSS Probability
0.21%

10.9th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 186b89659c4c67cccead52961eab0ca3b23951dc, < 3eb2bc1009c2476426ffbaf642d7ac82f4685b4d; >= 56c134f7f1b58be08bdb0ca8372474a4a5165f31, < 7de72f7534d961b117e0b051fa8798975036f5f3; >= 56c134f7f1b58be08bdb0ca8372474a4a5165f31, < 2952767e399e2796d45644ea50f442988d2bb02d; >= 56c134f7f1b58be08bdb0ca8372474a4a5165f31, < 612ea3a8e525580aa82f26ab873e285f5caf9d99; >= 56c134f7f1b58be08bdb0ca8372474a4a5165f31, < d684ce2db92b1093bcca2b42e5160a5fe23eb496; >= 56c134f7f1b58be08bdb0ca8372474a4a5165f31, < 9a94b85531852eb86283eca36ab041782c6b3518; >= 56c134f7f1b58be08bdb0ca8372474a4a5165f31, < cbef2a305a8a72969b86f96b7c07b86edde61aff; >= 5.15.149, < 5.15.212
LinuxLinux5.19

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-72274?
In the Linux kernel, the following vulnerability has been resolved: fbdev: hecubafb: fix potential memory leak in hecubafb_probe() The memory allocated for pagerefs in fb_deferred_io_init() is not freed on the error path. Fix it by calling fb_deferred_io_cleanup().
How severe is CVE-2026-72274?
Severity scoring for CVE-2026-72274 is pending analysis. The EPSS model estimates a 0.21% probability of exploitation in the next 30 days.
How do I fix CVE-2026-72274?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-72274?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST