Answer in brief
CVE-2026-72276 records a Unknown severity vulnerability in fbdev: metronomefb: fix potential memory leak in metronomefb_probe(). The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
Answer in brief
CVE-2026-72276 records a Unknown severity vulnerability in fbdev: metronomefb: fix potential memory leak in metronomefb_probe(). The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=186b89659c4c67cccead52961eab0ca3b23951dc <77e26383083c59a67244fcf2e70eecd354451906 || >=56c134f7f1b58be08bdb0ca8372474a4a5165f31 <f779bd494f9521f89bfd4ce23953f3527341e9fd || >=56c134f7f1b58be08bdb0ca8372474a4a5165f31 <01708cf3dca2f88eca26269521cbcc8e2f054ee4 || >=56c134f7f1b58be08bdb0ca8372474a4a5165f31 <d54bb39cd34f44b32d5c4a8416fff8b01a9e76be || >=56c134f7f1b58be08bdb0ca8372474a4a5165f31 <6854cf33dddb212bd7c3d69189623876e7334075 || >=56c134f7f1b58be08bdb0ca8372474a4a5165f31 <a889978ec44fe33edb3fb7140dcbbb8e6465c1cb || >=56c134f7f1b58be08bdb0ca8372474a4a5165f31 <894632b862a39b3fe1cb5de06fbae86225ea64de || >=5.15.149 <5.15.212 | 77e26383083c59a67244fcf2e70eecd354451906, f779bd494f9521f89bfd4ce23953f3527341e9fd, 01708cf3dca2f88eca26269521cbcc8e2f054ee4, d54bb39cd34f44b32d5c4a8416fff8b01a9e76be, 6854cf33dddb212bd7c3d69189623876e7334075, a889978ec44fe33edb3fb7140dcbbb8e6465c1cb, 894632b862a39b3fe1cb5de06fbae86225ea64de, 5.15.212 |
| Linux/Linuxgeneric | 5.19 | Not reported |
Published upstream
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 15, 2026
In the Linux kernel, the following vulnerability has been resolved: fbdev: metronomefb: fix potential memory leak in metronomefb_probe() The memory allocated for pagerefs in fb_deferred_io_init() is not freed on the error path. Fix it by calling fb_deferred_io_cleanup().
Quoted source text, attributed separately from HOL analysis.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=186b89659c4c67cccead52961eab0ca3b23951dc <77e26383083c59a67244fcf2e70eecd354451906 || >=56c134f7f1b58be08bdb0ca8372474a4a5165f31 <f779bd494f9521f89bfd4ce23953f3527341e9fd || >=56c134f7f1b58be08bdb0ca8372474a4a5165f31 <01708cf3dca2f88eca26269521cbcc8e2f054ee4 || >=56c134f7f1b58be08bdb0ca8372474a4a5165f31 <d54bb39cd34f44b32d5c4a8416fff8b01a9e76be || >=56c134f7f1b58be08bdb0ca8372474a4a5165f31 <6854cf33dddb212bd7c3d69189623876e7334075 || >=56c134f7f1b58be08bdb0ca8372474a4a5165f31 <a889978ec44fe33edb3fb7140dcbbb8e6465c1cb || >=56c134f7f1b58be08bdb0ca8372474a4a5165f31 <894632b862a39b3fe1cb5de06fbae86225ea64de || >=5.15.149 <5.15.212 | 77e26383083c59a67244fcf2e70eecd354451906, f779bd494f9521f89bfd4ce23953f3527341e9fd, 01708cf3dca2f88eca26269521cbcc8e2f054ee4, d54bb39cd34f44b32d5c4a8416fff8b01a9e76be, 6854cf33dddb212bd7c3d69189623876e7334075, a889978ec44fe33edb3fb7140dcbbb8e6465c1cb, 894632b862a39b3fe1cb5de06fbae86225ea64de, 5.15.212 |
| Linux/Linuxgeneric | 5.19 | Not reported |
Published upstream
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 15, 2026
In the Linux kernel, the following vulnerability has been resolved: fbdev: metronomefb: fix potential memory leak in metronomefb_probe() The memory allocated for pagerefs in fb_deferred_io_init() is not freed on the error path. Fix it by calling fb_deferred_io_cleanup().
Quoted source text, attributed separately from HOL analysis.