CVE-2026-72448

Source
https://cve.org/CVERecord?id=CVE-2026-72448
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72448.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-72448
Downstream
Published
2026-08-15T05:56:57.701Z
Modified
2026-08-16T03:48:42.380893147Z
Summary
octeontx2-pf: Fix leak of SQ timestamp buffer on teardown
Details

In the Linux kernel, the following vulnerability has been resolved:

octeontx2-pf: Fix leak of SQ timestamp buffer on teardown

The send-queue timestamp ring is allocated with qmemalloc() when timestamping is used, but otx2freesqres() never freed sq->timestamps, leaking that memory across ifdown and device removal. Add the missing qmem_free() alongside the other SQ companion buffers.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72448.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
c9c12d339d93366732112d7ff472958834bfc3c5
Fixed
c642a530aaaeb9a3e356cedfe77955e7f983380e
Fixed
e68ada66afcae0bc2a7c06b43c5a9a081d29e7b4
Fixed
d6c0b0c802d3c49b86cad665a7f3790dc55a0394
Fixed
19d2d36e193c3fb515c052a56bfc83d8ac7b6764
Fixed
e8e9dff204e8d8553495893e1a44d2b5021648de
Fixed
3d45d40b872aec0073d4cf08956a6c9b87c5e396
Fixed
452ec5058ea4ed63adae8d6beeac9ee687fe8061
Fixed
a056db30de92945ff8ee6033096678bfbae878e3

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72448.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.10.0
Fixed
5.10.261
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.212
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.178
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.145
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.97
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72448.json"