-

CVE-2026-93223

staging: media: tegra-video: fix of_node_put() on VIP parse errors

In the Linux kernel, the following vulnerability has been resolved:

staging: media: tegra-video: fix of_node_put() on VIP parse errors

tegra_vip_channel_of_parse() initializes np from dev->of_node without
taking a reference, but its error paths drop one through the
err_node_put label. This underflows the refcount of the VIP device's
OF node when endpoint parsing fails on a malformed device tree.

The only reference the function takes on np is the success-path
of_node_get() stored in vip->chan.of_node, and that one is already
released by the tegra_vip_init() error path and by tegra_vip_exit().

Return errors directly instead of jumping to the bogus cleanup label.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version e740d199cf0ff1e53ddc2ab067c0a09b55845d68
Version < a3783800c9475fa58b8db0885893f96a23f949da
Status affected
Version e740d199cf0ff1e53ddc2ab067c0a09b55845d68
Version < 1295ba29ac590bbb5c4a586afd408018168af10b
Status affected
Version e740d199cf0ff1e53ddc2ab067c0a09b55845d68
Version < 656d047dc0c29c0964d840217a0593f16aa9bc5e
Status affected
Version e740d199cf0ff1e53ddc2ab067c0a09b55845d68
Version < fc9937019cf7e2fe4e29f9341e6400bcd2cde721
Status affected
Version e740d199cf0ff1e53ddc2ab067c0a09b55845d68
Version < 7393372f79db940acff206b43e2905685a0c57ad
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 6.5
Status affected
Version 0
Version < 6.5
Status unaffected
Version <= 6.6.*
Version 6.6.157
Status unaffected
Version <= 6.12.*
Version 6.12.109
Status unaffected
Version <= 6.18.*
Version 6.18.50
Status unaffected
Version <= 7.2.*
Version 7.2.4
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.17% 0.054
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/a3783800c9475fa58b8db0885893f96a23f949da
https://git.kernel.org/stable/c/1295ba29ac590bbb5c4a586afd408018168af10b
https://git.kernel.org/stable/c/656d047dc0c29c0964d840217a0593f16aa9bc5e
https://git.kernel.org/stable/c/fc9937019cf7e2fe4e29f9341e6400bcd2cde721
https://git.kernel.org/stable/c/7393372f79db940acff206b43e2905685a0c57ad