CVE-2026-43256
media: qcom: camss: vfe: Fix out-of-bounds access in vfe_isr_reg_update()
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
In the Linux kernel, the following vulnerability has been resolved: media: qcom: camss: vfe: Fix out-of-bounds access in vfe_isr_reg_update() vfe_isr() iterates using MSM_VFE_IMAGE_MASTERS_NUM(7) as the loop bound and passes the index to vfe_isr_reg_update(). However, vfe->line[] array is defined with VFE_LINE_NUM_MAX(4): struct vfe_line line[VFE_LINE_NUM_MAX]; When index is 4, 5, 6, the access to vfe->line[line_id] exceeds the array bounds and resulting in out-of-bounds memory access. Fix this by using separate loops for output lines and write masters.
| Vendor | linux |
| Product | linux |
| Ecosystems | |
| Industries | Technology |
| Published | May 6, 2026 |
Stay Ahead of the Next One
Get instant alerts for linux linux
Be the first to know when new unknown vulnerabilities affecting linux linux are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Linux / Linux
4edc8eae715cecf5f8bf12a0c77c281f336c37db < e6cbf765686fb6c1d8f2530b3daf6c66efc92f5d 4edc8eae715cecf5f8bf12a0c77c281f336c37db < 0c074e80921fd18984b75836730d76c768c84f65 4edc8eae715cecf5f8bf12a0c77c281f336c37db < 1b103307df6d461a0731be25aca69ad0335b0933 4edc8eae715cecf5f8bf12a0c77c281f336c37db < fade67c88870f497a13ed450ba01f7236c92dd9b 4edc8eae715cecf5f8bf12a0c77c281f336c37db < e7a38ecda2498e7ce998793ac2a46ca47317635d 4edc8eae715cecf5f8bf12a0c77c281f336c37db < d965919af524e68cb2ab1a685872050ad2ee933d
Linux / Linux
5.18
References
git.kernel.org: https://git.kernel.org/stable/c/e6cbf765686fb6c1d8f2530b3daf6c66efc92f5d git.kernel.org: https://git.kernel.org/stable/c/0c074e80921fd18984b75836730d76c768c84f65 git.kernel.org: https://git.kernel.org/stable/c/1b103307df6d461a0731be25aca69ad0335b0933 git.kernel.org: https://git.kernel.org/stable/c/fade67c88870f497a13ed450ba01f7236c92dd9b git.kernel.org: https://git.kernel.org/stable/c/e7a38ecda2498e7ce998793ac2a46ca47317635d git.kernel.org: https://git.kernel.org/stable/c/d965919af524e68cb2ab1a685872050ad2ee933d