In the Linux kernel, the following vulnerability has been resolved: media: tda18250: fix possible integer overflow Integer overflow may occur, when variable exp equals to zero. Result of shift 1 << (exp - 1) may then leads to undefined behavior.
Shenlong is analyzing...
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-89859 | scsi: qla2xxx: Zero dport diagnostics buffer to avoid info leak | |
| CVE-2026-89877 | media: saa7164: fix cleanup on resource allocation failure | |
| CVE-2026-89875 | media: ti: vpe: quiesce overflow recovery before freeing streams | |
| CVE-2026-89874 | media: v4l2-async: avoid deleting unlinked ASC entry on link error | |
| CVE-2026-89872 | media: v4l2-fwnode: Fix fwnode leak in v4l2_fwnode_parse_link | |
| CVE-2026-89873 | media: v4l2-ctrls: validate HEVC EXT SPS RPS counts | |
| CVE-2026-89871 | media: video-i2c: fix kthread error pointer left in kthread_vid_cap on failure | |
| CVE-2026-89870 | media: zoran: Avoid freeing a registered video_device twice | |
| CVE-2026-89869 | media: qcom: iris: use disable_irq() during power-off | |
| CVE-2026-89868 | media: chips-media: wave5: Add timeout while stop_streaming | |
| CVE-2026-89867 | media: chips-media: wave5: Defer job_finish() only when a DEC_PIC was queued | |
| CVE-2026-89866 | media: chips-media: wave5: Resume device before setting EOS flag | |
| CVE-2026-89865 | scsi: qla2xxx: Zero SFP DMA buffer in FRU/I2C bsg handlers | |
| CVE-2026-89864 | scsi: qla2xxx: Bound i2c->length in I2C bsg handlers | |
| CVE-2026-89863 | scsi: qla2xxx: edif: Fix NULL pointer deref in RX SA delete check | |
| CVE-2026-89862 | scsi: qla2xxx: Fix BSG job leak on validate flash image error path | |
| CVE-2026-89861 | scsi: qla2xxx: Hold vport reference in qla24xx_report_id_acquisition() | |
| CVE-2026-89860 | scsi: qla2xxx: Initialize NVMe abort_work once at submission | |
| CVE-2026-89849 | scsi: qla2xxx: Reject non-SCSI SRB on status IOCB fast path | |
| CVE-2026-89847 | scsi: qla2xxx: Avoid double completion in async IOCB timeout |
Showing top 20 of 276 CVEs. View all on vendor page → →
No comments yet