NONE · 0

CVE-2026-72266

In the Linux kernel, the following vulnerability has been resolved: fbdev: vesafb: fix memory leak in vesafb_probe() Since commit 73ce73c30ba9 ("fbdev: Transfer video= option strings to caller; clar...

Vulnerability Description

In the Linux kernel, the following vulnerability has been resolved: fbdev: vesafb: fix memory leak in vesafb_probe() Since commit 73ce73c30ba9 ("fbdev: Transfer video= option strings to caller; clarify ownership") the string returned from fb_get_options() is expected to be freed by the caller. But the string is not freed in vesafb_probe(). Fix that by freeing the option string after setup.

References

FAQ

What is CVE-2026-72266?

CVE-2026-72266 is a documented vulnerability. In the Linux kernel, the following vulnerability has been resolved: fbdev: vesafb: fix memory leak in vesafb_probe() Since commit 73ce73c30ba9 ("fbdev: Transfer video= option strings to caller; clar...

How severe is CVE-2026-72266?

CVSS scoring is not yet available for CVE-2026-72266. Check NVD for updates.

Is there a patch for CVE-2026-72266?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.