๐Ÿ” CVE Alert

CVE-2026-89870

UNKNOWN 0.0

media: zoran: Avoid freeing a registered video_device twice

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: media: zoran: Avoid freeing a registered video_device twice zoran_init_video_device() installs zoran_vdev_release() as the video_device release callback through zoran_template. After video_register_device() succeeds, video_unregister_device() drops the registered video_device reference and the V4L2 core eventually invokes that release callback, which kfree()s the video_device. zoran_exit_video_devices() called video_unregister_device() and then kfree(zr->video_dev), so device teardown could free the same video_device twice. Remove the direct kfree() and clear the cached pointer after unregistering. The pre-registration failure path keeps its manual free because the video_device was not registered there. This issue was found by a static analysis checker and confirmed by manual source review.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 16, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
82e3a496eb56da0b9f29fdc5b63cedb3289e91de < 3ad6cf27505017a6794f5f96c31218c2291e951b 82e3a496eb56da0b9f29fdc5b63cedb3289e91de < c4acac8cdc005b2d14b6cef5e215d264212857f3 82e3a496eb56da0b9f29fdc5b63cedb3289e91de < 4d99d8d0d895489064783601a516bd45812fa992 82e3a496eb56da0b9f29fdc5b63cedb3289e91de < f1c4f3885df1f09bcab5296d86834d104f865e86 82e3a496eb56da0b9f29fdc5b63cedb3289e91de < 672dbccf4351370dad002d3c78dbb29ca1588f22 82e3a496eb56da0b9f29fdc5b63cedb3289e91de < 0735e0b5a96761a9ce277a238e834008ad92a0a5 bd01629315ffd5b63da91d0bd529a77d30e55028 ff3357bffd9fb78f59762d8955afc7382a279079 c1ba65100a359fe28cfe37e09e10c99f247cbf1e 1e501ec38796f43e995731d1bcd4173cb1ccfce0 5.10.110 < 5.11 5.15.33 < 5.16 5.16.19 < 5.17 5.17.2 < 5.18
Linux / Linux
5.18

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/3ad6cf27505017a6794f5f96c31218c2291e951b git.kernel.org: https://git.kernel.org/stable/c/c4acac8cdc005b2d14b6cef5e215d264212857f3 git.kernel.org: https://git.kernel.org/stable/c/4d99d8d0d895489064783601a516bd45812fa992 git.kernel.org: https://git.kernel.org/stable/c/f1c4f3885df1f09bcab5296d86834d104f865e86 git.kernel.org: https://git.kernel.org/stable/c/672dbccf4351370dad002d3c78dbb29ca1588f22 git.kernel.org: https://git.kernel.org/stable/c/0735e0b5a96761a9ce277a238e834008ad92a0a5