CVE-2026-72276

UnknownEPSS 0.21%

Last modified

CVE-2026-72276 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: fbdev: metronomefb: fix potential memory leak in metronomefb_probe() The memory allocated for pagerefs in fb_deferred_io_init() is not freed on the error path. Fix it by calling fb_deferred_io_cleanup().. EPSS estimates a 0.21% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: fbdev: metronomefb: fix potential memory leak in metronomefb_probe() The memory allocated for pagerefs in fb_deferred_io_init() is not freed on the error path. Fix it by calling fb_deferred_io_cleanup().

Metrics

EPSS Probability
0.21%

12.2th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 186b89659c4c67cccead52961eab0ca3b23951dc, < 77e26383083c59a67244fcf2e70eecd354451906; >= 56c134f7f1b58be08bdb0ca8372474a4a5165f31, < f779bd494f9521f89bfd4ce23953f3527341e9fd; >= 56c134f7f1b58be08bdb0ca8372474a4a5165f31, < 01708cf3dca2f88eca26269521cbcc8e2f054ee4; >= 56c134f7f1b58be08bdb0ca8372474a4a5165f31, < d54bb39cd34f44b32d5c4a8416fff8b01a9e76be; >= 56c134f7f1b58be08bdb0ca8372474a4a5165f31, < 6854cf33dddb212bd7c3d69189623876e7334075; >= 56c134f7f1b58be08bdb0ca8372474a4a5165f31, < a889978ec44fe33edb3fb7140dcbbb8e6465c1cb; >= 56c134f7f1b58be08bdb0ca8372474a4a5165f31, < 894632b862a39b3fe1cb5de06fbae86225ea64de; >= 5.15.149, < 5.15.212
LinuxLinux5.19

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-72276?
In the Linux kernel, the following vulnerability has been resolved: fbdev: metronomefb: fix potential memory leak in metronomefb_probe() The memory allocated for pagerefs in fb_deferred_io_init() is not freed on the error path. Fix it by calling fb_deferred_io_cleanup().
How severe is CVE-2026-72276?
Severity scoring for CVE-2026-72276 is pending analysis. The EPSS model estimates a 0.21% probability of exploitation in the next 30 days.
How do I fix CVE-2026-72276?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-72276?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST