CVE-2026-89890
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:31:53
- Zuletzt bearbeitet 16.09.2026 15:18:15
In the Linux kernel, the following vulnerability has been resolved: media: go7007: defer the ALSA v4l2 put until card release go7007_snd_init() already takes a v4l2_device reference for the ALSA side, but go7007_snd_remove() drops it immediately af...
- EPSS 0.21%
- Veröffentlicht 16.09.2026 10:31:53
- Zuletzt bearbeitet 16.09.2026 11:16:57
In the Linux kernel, the following vulnerability has been resolved: media: em28xx: fix use-after-free of dev_next->devlist on disconnect When a device with has_dual_ts=1 is probed and the is_audio_only path is taken, both dev and dev->dev_next are ...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:31:52
- Zuletzt bearbeitet 16.09.2026 11:16:57
In the Linux kernel, the following vulnerability has been resolved: media: i2c: imx415: Release runtime PM reference on VBLANK error The VBLANK path returned immediately when programming VMAX failed after pm_runtime_get_if_in_use() had taken a runt...
CVE-2026-89887
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:31:51
- Zuletzt bearbeitet 16.09.2026 15:18:15
In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov7740: fix use-after-destroy in remove The ov7740_remove() function had a severe teardown order bug where it destroyed the driver's mutex before freeing the V4L2 contr...
CVE-2026-89888
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:31:51
- Zuletzt bearbeitet 16.09.2026 15:18:15
In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov02a10: fix endpoint parsing use-after-free The ov02a10_check_hwcfg() function calls fwnode_handle_put(ep) immediately after allocating and parsing the endpoint. Howev...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:31:50
- Zuletzt bearbeitet 16.09.2026 11:16:57
In the Linux kernel, the following vulnerability has been resolved: media: intel/ipu6: fix async notifier cleanup leak on parse error isys_notifier_init() calls v4l2_async_nf_init() and then adds fwnode remote subdevs in a loop with v4l2_async_nf_a...
- EPSS 0.2%
- Veröffentlicht 16.09.2026 10:31:49
- Zuletzt bearbeitet 16.09.2026 11:16:56
In the Linux kernel, the following vulnerability has been resolved: media: platform: mtk-mdp3: fix NULL deref on failed SCP lookup Add the missing sanity check after looking up the SCP to avoid dereferencing a NULL-pointer in case its driver has no...
CVE-2026-89885
- EPSS 0.18%
- Veröffentlicht 16.09.2026 10:31:49
- Zuletzt bearbeitet 16.09.2026 15:18:15
In the Linux kernel, the following vulnerability has been resolved: media: platform: mtk-mdp3: Fix SCP device refcounting mdp_probe() first tries to get the SCP handle with scp_get(). When that fails, it falls back to looking up the SCP platform de...
CVE-2026-89883
- EPSS 0.16%
- Veröffentlicht 16.09.2026 10:31:48
- Zuletzt bearbeitet 16.09.2026 15:18:14
In the Linux kernel, the following vulnerability has been resolved: media: rc: sunxi-cir: Unregister rc device on probe failure After rc_register_device() succeeds, later probe failures must undo the registration with rc_unregister_device(). The cu...
CVE-2026-89882
- EPSS 0.15%
- Veröffentlicht 16.09.2026 10:31:47
- Zuletzt bearbeitet 16.09.2026 15:18:14
In the Linux kernel, the following vulnerability has been resolved: media: rkvdec: hevc: guard INTER_REF_PIC_SET_PRED index underflow st_ref_pic_set_prediction() computes the reference RPS index as st_rps_idx - (delta_idx_minus1 + 1) per HEVC spec ...