CVE-2026-72387

Source
https://cve.org/CVERecord?id=CVE-2026-72387
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72387.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-72387
Downstream
Published
2026-08-15T05:56:17.303Z
Modified
2026-08-16T03:48:40.956185971Z
Summary
drm/panthor: Fix potential invalid pointer deref in group_process_tiler_oom()
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/panthor: Fix potential invalid pointer deref in groupprocesstiler_oom()

If heaps is an ERRPTR(), panthorheappoolput() will deref an invalid pointer. Make sure we set it to NULL in that case.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72387.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
de85488138247d034eb3241840424a54d660926b
Fixed
bfc5b91ab3ddddf636d8c1c050455bf4e14c912b
Fixed
dd0b2976b7c0f4ea806855ed19ffad967d36610e
Fixed
053522ba615888e874adc04e675d9ed2e13f35af
Fixed
b39436d0ba1571dbcda69d20ec567344b3eecfc7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72387.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.10.0
Fixed
6.12.97
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72387.json"