In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: Fix leak of SQ timestamp buffer on teardown The send-queue… (CVE-2026-72448)
A memory leak vulnerability in the Linux kernel's octeontx2-pf driver was fixed. The issue involved the send-queue timestamp buffer not being freed during teardown, causing memory to leak when the device was taken down or removed.
AI Analysis
Technical Summary
The Linux kernel octeontx2-pf driver allocates a send-queue timestamp ring buffer with qmem_alloc() when timestamping is enabled. However, the function otx2_free_sq_res() responsible for resource cleanup did not free the sq->timestamps buffer, resulting in a memory leak during interface shutdown or device removal. The fix adds the missing qmem_free() call to properly release this buffer alongside other send-queue resources.
Potential Impact
This vulnerability causes a memory leak in the kernel when the affected network device is brought down or removed. While it does not directly lead to code execution or privilege escalation, the leak could degrade system stability or performance over time if the device is frequently cycled.
Mitigation Recommendations
A fix has been applied to the Linux kernel to free the timestamp buffer correctly. Users should update to a kernel version that includes this patch. Since this is a resource leak, no additional mitigations are required beyond applying the official fix.
In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: Fix leak of SQ timestamp buffer on teardown The send-queue… (CVE-2026-72448)
Description
A memory leak vulnerability in the Linux kernel's octeontx2-pf driver was fixed. The issue involved the send-queue timestamp buffer not being freed during teardown, causing memory to leak when the device was taken down or removed.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The Linux kernel octeontx2-pf driver allocates a send-queue timestamp ring buffer with qmem_alloc() when timestamping is enabled. However, the function otx2_free_sq_res() responsible for resource cleanup did not free the sq->timestamps buffer, resulting in a memory leak during interface shutdown or device removal. The fix adds the missing qmem_free() call to properly release this buffer alongside other send-queue resources.
Potential Impact
This vulnerability causes a memory leak in the kernel when the affected network device is brought down or removed. While it does not directly lead to code execution or privilege escalation, the leak could degrade system stability or performance over time if the device is frequently cycled.
Mitigation Recommendations
A fix has been applied to the Linux kernel to free the timestamp buffer correctly. Users should update to a kernel version that includes this patch. Since this is a resource leak, no additional mitigations are required beyond applying the official fix.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- GHSA-76vp-9x4g-cm7p
- Osv Schema Version
- 1.4.0
- Aliases
- ["CVE-2026-72448"]
- Ecosystems
- []
- Database Specific Severity
- null
- Cvss Version
- null
Threat ID: 6a808b6ebf8831d5394f94c3
Added to database: 08/15/2026, 15:53:18 UTC
Last enriched: 08/15/2026, 16:22:47 UTC
Last updated: 08/16/2026, 00:41:15 UTC
Views: 3
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.