CVE-2026-72263EPSS p8.6%
CVE-2026-72263CVE-2026-72263
Description
In the Linux kernel, the following vulnerability has been resolved:
ASoC: SOF: topology: fix memory leak in snd_sof_load_topology
When the topology filename contains "dummy" and tplg_cnt is 0, the
function returns -EINVAL directly without freeing the tplg_files
allocated by kcalloc() at line 2497. This leaks memory on every
such topology load attempt.
Fix this by setting ret = -EINVAL and jumping to the out: label,
which already handles the kfree(tplg_files) cleanup.
Scoring
| EPSS | 0.20% probability of exploitation · percentile 8.6% · 2026-10-05T12:00:23Z |
| Last modified | 2026-08-17 |