CVE-2026-72401EPSS p10.2%
CVE-2026-72401CVE-2026-72401
Description
In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix insn_aux_data leak on verifier err_free_env path
When bpf_check() allocates env->insn_aux_data successfully but later
fails to allocate env->succ, it jumps directly to err_free_env.
The existing vfree(env->insn_aux_data) sits before the err_free_env
label, so that direct jump bypasses it and leaks insn_aux_data.
Move vfree(env->insn_aux_data) into err_free_env so all early and late
exit paths release it consistently.
Scoring
| EPSS | 0.21% probability of exploitation · percentile 10.2% · 2026-10-05T12:00:23Z |
| Last modified | 2026-08-17 |