CVE-2026-43189
Published: May 6, 2026
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: media: v4l2-async: Fix error handling on steps after finding a match Once an async connection is found to be matching with an fwnode, a sub-device may be registered (in case it wasn't already), its bound operation is called, ancillary links are created, the async connection is added to the sub-device's list of connections and removed from the global waiting connection list. Further on, the sub-device's possible own notifier is searched for possible additional matches. Fix these specific issues: - If v4l2_async_match_notify() failed before the sub-notifier handling, the async connection was unbound and its entry removed from the sub-device's async connection list. The latter part was also done in v4l2_async_match_notify(). - The async connection's sd field was only set after creating ancillary links in v4l2_async_match_notify(). It was however dereferenced in v4l2_async_unbind_subdev_one(), which was called on error path of v4l2_async_match_notify() failure.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 28a1295795d85a25f2e7dd391c43969e95fcb341 - < 30aaed311f973f13ba13a0cd2dc0202f595fff48affected 28a1295795d85a25f2e7dd391c43969e95fcb341 - < 461733d83e67ba7e3a5b750c0d203f738e01244faffected 28a1295795d85a25f2e7dd391c43969e95fcb341 - < b02bcb378efa8af07827f49b3afcc5e825318c55affected 28a1295795d85a25f2e7dd391c43969e95fcb341 - < 2de0a3c8148fc3dbea21981e6569f550b3626119affected 28a1295795d85a25f2e7dd391c43969e95fcb341 - < 7345d6d356336c448d6b9230ed8704f39679fd12 |
Linux | Linux | affected 6.6unaffected 0 - < 6.6unaffected 6.6.128 - <= 6.6.*unaffected 6.12.75 - <= 6.12.*unaffected 6.18.16 - <= 6.18.*+2 more versions |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now