CVE-2026-72267
unknown
CVSS v3
—
CVSS v4 NEW
—
VIR risk
—
Description
In the Linux kernel, the following vulnerability has been resolved: fbdev: carminefb: fix potential memory leak in alloc_carmine_fb() The memory allocated for modelist in fb_videomode_to_modelist() is not freed in the subsequent error path. Fix that by calling fb_destroy_modelist()
Predictions
Exploit likelihood
20%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or — if you've already worked around this in production — publish your fix to the community-verified tier.
Propose a mitigation on Community Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
References
- https://git.kernel.org/stable/c/6069044e74b7510bf2f034ccd049bc962fb9c765
- https://git.kernel.org/stable/c/6fcca16a2b19c37f60693c56cbc0c923364ff3ef
- https://git.kernel.org/stable/c/97b6c3f6e82a526d95dcfbfcf1c42ba44c61c3d6
- https://git.kernel.org/stable/c/b51990be8411335c263b51e9f4def1e84bfaa923
- https://git.kernel.org/stable/c/bcc43b2f7410eddb21f73e9a650499a6432c9383
- https://git.kernel.org/stable/c/d21e6747f3f68dcce59b5d2205f98633d28f69eb
- https://git.kernel.org/stable/c/d81860691e4cfa14d596136ea2727f244e9e5950
- https://git.kernel.org/stable/c/dae8f6ddc35cb1673dba32d2fd8f1f85cd377adf
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.