- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:31:56
- Zuletzt bearbeitet 16.09.2026 11:16:58
In the Linux kernel, the following vulnerability has been resolved: media: cobalt: Avoid freeing ALSA private data twice snd_cobalt_card_create() stores cobsc in sc->private_data and installs snd_cobalt_card_private_free() as sc->private_free. From...
CVE-2026-89893
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:31:55
- Zuletzt bearbeitet 16.09.2026 15:18:15
In the Linux kernel, the following vulnerability has been resolved: media: cx23885: cancel NetUP CI work before teardown netup_ci_exit() frees a netup_ci_state while its work item, netup_read_ci_status(), may still be pending or running on the syst...
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:31:54
- Zuletzt bearbeitet 16.09.2026 11:16:57
In the Linux kernel, the following vulnerability has been resolved: media: em28xx: defer audio-only extension registration The audio-only path registers extensions while probing the primary device. For a dual-TS board, this happens before dev_next ...
CVE-2026-89890
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:31:53
- Zuletzt bearbeitet 16.09.2026 15:18:15
In the Linux kernel, the following vulnerability has been resolved: media: go7007: defer the ALSA v4l2 put until card release go7007_snd_init() already takes a v4l2_device reference for the ALSA side, but go7007_snd_remove() drops it immediately af...
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:31:53
- Zuletzt bearbeitet 16.09.2026 11:16:57
In the Linux kernel, the following vulnerability has been resolved: media: em28xx: fix use-after-free of dev_next->devlist on disconnect When a device with has_dual_ts=1 is probed and the is_audio_only path is taken, both dev and dev->dev_next are ...
CVE-2026-89887
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:31:51
- Zuletzt bearbeitet 16.09.2026 15:18:15
In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov7740: fix use-after-destroy in remove The ov7740_remove() function had a severe teardown order bug where it destroyed the driver's mutex before freeing the V4L2 contr...
CVE-2026-89888
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:31:51
- Zuletzt bearbeitet 16.09.2026 15:18:15
In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov02a10: fix endpoint parsing use-after-free The ov02a10_check_hwcfg() function calls fwnode_handle_put(ep) immediately after allocating and parsing the endpoint. Howev...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:31:50
- Zuletzt bearbeitet 16.09.2026 11:16:57
In the Linux kernel, the following vulnerability has been resolved: media: intel/ipu6: fix async notifier cleanup leak on parse error isys_notifier_init() calls v4l2_async_nf_init() and then adds fwnode remote subdevs in a loop with v4l2_async_nf_a...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:31:49
- Zuletzt bearbeitet 16.09.2026 11:16:56
In the Linux kernel, the following vulnerability has been resolved: media: platform: mtk-mdp3: fix NULL deref on failed SCP lookup Add the missing sanity check after looking up the SCP to avoid dereferencing a NULL-pointer in case its driver has no...
CVE-2026-89885
- EPSS 0.18%
- Veröffentlicht 16.09.2026 10:31:49
- Zuletzt bearbeitet 16.09.2026 15:18:15
In the Linux kernel, the following vulnerability has been resolved: media: platform: mtk-mdp3: Fix SCP device refcounting mdp_probe() first tries to get the SCP handle with scp_get(). When that fails, it falls back to looking up the SCP platform de...