CVE-2026-72387

critical

Description

In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Fix potential invalid pointer deref in group_process_tiler_oom() If heaps is an ERR_PTR(), panthor_heap_pool_put() will deref an invalid pointer. Make sure we set it to NULL in that case.

References

https://git.kernel.org/stable/c/dd0b2976b7c0f4ea806855ed19ffad967d36610e

https://git.kernel.org/stable/c/bfc5b91ab3ddddf636d8c1c050455bf4e14c912b

https://git.kernel.org/stable/c/b39436d0ba1571dbcda69d20ec567344b3eecfc7

https://git.kernel.org/stable/c/053522ba615888e874adc04e675d9ed2e13f35af

Details

Source: Mitre, NVD

Published: 2026-08-15

Updated: 2026-08-17

Risk Information

CVSS v2

Base Score: 7.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Severity: High

CVSS v3

Base Score: 9.1

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

Severity: Critical

EPSS

EPSS: 0.00209