CVE-2026-89897
- EPSS 0.3%
- Veröffentlicht 16.09.2026 10:31:58
- Zuletzt bearbeitet 16.09.2026 15:18:15
In the Linux kernel, the following vulnerability has been resolved: media: cec: Serialize exclusive follower delivery cec_receive_notify() reads the exclusive follower pointer without the adapter lock. Serialize the no-follower check and message de...
CVE-2026-89898
- EPSS 0.32%
- Veröffentlicht 16.09.2026 10:31:58
- Zuletzt bearbeitet 16.09.2026 15:18:16
In the Linux kernel, the following vulnerability has been resolved: media: cec: extron-da-hd-4k-plus: add sanity check Add check to prevent overflowing msg.msg[] in case the incoming data is malformed.
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:31:57
- Zuletzt bearbeitet 16.09.2026 11:16:58
In the Linux kernel, the following vulnerability has been resolved: media: cedrus: fix memory leak in cedrus_init_ctrls() In cedrus_init_ctrls(), the V4L2 control handler is initialized before allocating memory for ctx->ctrls. If this allocation fa...
CVE-2026-89894
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:31:56
- Zuletzt bearbeitet 16.09.2026 15:18:15
In the Linux kernel, the following vulnerability has been resolved: media: cx231xx: reject geometry changes while the VBI queue is busy vidioc_s_fmt_vid_cap() and vidioc_s_std() change the device-wide dev->width / dev->norm but only refuse the chan...
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:31:56
- Zuletzt bearbeitet 16.09.2026 11:16:58
In the Linux kernel, the following vulnerability has been resolved: media: cobalt: Avoid freeing ALSA private data twice snd_cobalt_card_create() stores cobsc in sc->private_data and installs snd_cobalt_card_private_free() as sc->private_free. From...
CVE-2026-89893
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:31:55
- Zuletzt bearbeitet 16.09.2026 15:18:15
In the Linux kernel, the following vulnerability has been resolved: media: cx23885: cancel NetUP CI work before teardown netup_ci_exit() frees a netup_ci_state while its work item, netup_read_ci_status(), may still be pending or running on the syst...
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:31:54
- Zuletzt bearbeitet 16.09.2026 11:16:57
In the Linux kernel, the following vulnerability has been resolved: media: em28xx: defer audio-only extension registration The audio-only path registers extensions while probing the primary device. For a dual-TS board, this happens before dev_next ...
CVE-2026-89890
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:31:53
- Zuletzt bearbeitet 16.09.2026 15:18:15
In the Linux kernel, the following vulnerability has been resolved: media: go7007: defer the ALSA v4l2 put until card release go7007_snd_init() already takes a v4l2_device reference for the ALSA side, but go7007_snd_remove() drops it immediately af...
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:31:53
- Zuletzt bearbeitet 16.09.2026 11:16:57
In the Linux kernel, the following vulnerability has been resolved: media: em28xx: fix use-after-free of dev_next->devlist on disconnect When a device with has_dual_ts=1 is probed and the is_audio_only path is taken, both dev and dev->dev_next are ...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:31:52
- Zuletzt bearbeitet 16.09.2026 11:16:57
In the Linux kernel, the following vulnerability has been resolved: media: i2c: imx415: Release runtime PM reference on VBLANK error The VBLANK path returned immediately when programming VMAX failed after pm_runtime_get_if_in_use() had taken a runt...