Description
In the Linux kernel, the following vulnerability has been resolved:

fbdev: tdfxfb: fix potential memory leak in tdfxfb_probe()

In tdfxfb_probe(), the memory allocated for modelist using
fb_videomode_to_modelist() when CONFIG_FB_3DFX_I2C is defined, is not
freed in the subsequent error paths.
Fix that by calling fb_destroy_modelist().
Published: 2026-08-15
Score: n/a
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

An unfreed memory allocation in the tdfxfb_probe() routine causes a kernel memory leak when the CONFIG_FB_3DFX_I2C option is enabled. The leak occurs because fb_videomode_to_modelist() allocates memory that is not released on error paths, potentially leading to gradual kernel memory exhaustion and system instability.

Affected Systems

All Linux kernel releases that include the tdfxfb driver with the CONFIG_FB_3DFX_I2C configuration enabled are affected. The issue was fixed by adding a call to fb_destroy_modelist() in the error handling path of tdfxfb_probe().

Risk and Exploitability

The EPSS score is not available, and the vulnerability is not listed in CISA KEV. Exploitation is limited to local environments where a user can trigger tdfxfb_probe(), such as during framebuffer initialization. The primary risk is resource exhaustion and denial of service; no direct confidentiality or integrity impact is documented.

Generated by OpenCVE AI on August 15, 2026 at 09:59 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the kernel to a version that includes the patch adding fb_destroy_modelist() to tdfxfb_probe().
  • If the 3DFX I2C framebuffer driver is not required, disable CONFIG_FB_3DFX_I2C to eliminate the code path that could leak memory.
  • Monitor kernel memory usage for anomalous growth patterns that could indicate framebuffer related leaks.

Generated by OpenCVE AI on August 15, 2026 at 09:59 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 15 Aug 2026 10:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-401

Sat, 15 Aug 2026 06:00:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: fbdev: tdfxfb: fix potential memory leak in tdfxfb_probe() In tdfxfb_probe(), the memory allocated for modelist using fb_videomode_to_modelist() when CONFIG_FB_3DFX_I2C is defined, is not freed in the subsequent error paths. Fix that by calling fb_destroy_modelist().
Title fbdev: tdfxfb: fix potential memory leak in tdfxfb_probe()
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-08-15T05:54:53.357Z

Reserved: 2026-08-09T03:40:39.916Z

Link: CVE-2026-72268

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-15T06:21:55.467

Modified: 2026-08-15T06:21:55.467

Link: CVE-2026-72268

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-15T10:00:06Z

Weaknesses
  • CWE-401

    Missing Release of Memory after Effective Lifetime