In the Linux kernel, the following vulnerability has been resolved:
fbdev: carminefb: fix potential memory leak in alloc_carmine_fb()
The memory allocated for modelist in fb_videomode_to_modelist() is not
freed in the subsequent error path.
Fix that by calling fb_destroy_modelist()
CVE-2026-72267
NONE
EPSS 0.21%
Updated Aug 17, 2026
Linux
https://git.kernel.org/stable/c/6069044e74b7510bf2f034ccd049bc962fb9c765
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/6fcca16a2b19c37f60693c56cbc0c923364ff3ef
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/97b6c3f6e82a526d95dcfbfcf1c42ba44c61c3d6
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/b51990be8411335c263b51e9f4def1e84bfaa923
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/bcc43b2f7410eddb21f73e9a650499a6432c9383
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/d21e6747f3f68dcce59b5d2205f98633d28f69eb
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/d81860691e4cfa14d596136ea2727f244e9e5950
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/dae8f6ddc35cb1673dba32d2fd8f1f85cd377adf
416baaa9-dc9f-4396-8d5f-8c081fb06d67
CVE Details
CVE ID
CVE-2026-72267
Published Date
Aug 15, 2026
Vendor
Linux
Severity
NONE
Exploit Prediction (EPSS)
Probability of Exploit
0.21%
Likelihood of exploitation in next 30 days
Percentile:
11.1th percentile (higher than 11.1% of all CVEs)
Standard patching cycle
Impact
Minimal impact
Source
View Advisory