{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2026-68223","assignerOrgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","state":"PUBLISHED","assignerShortName":"Linux","dateReserved":"2026-07-30T09:28:09.375Z","datePublished":"2026-08-10T12:00:44.123Z","dateUpdated":"2026-08-19T16:31:54.081Z"},"containers":{"cna":{"providerMetadata":{"orgId":"416baaa9-dc9f-4396-8d5f-8c081fb06d67","shortName":"Linux","dateUpdated":"2026-08-19T16:31:54.081Z"},"descriptions":[{"lang":"en","value":"In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: meson: vdec: Fix memory leak in error path of vdec_open\n\nThe vdec_open() function previously jumped directly to\nerr_m2m_release when vdec_init_ctrls() failed, skipping\nrelease of the m2m context. This caused a resource leak.\n\nFix it by introducing a proper err_m2m_ctx_release label\nthat calls v4l2_m2m_ctx_release(sess->m2m_ctx) before\nreleasing the m2m device.\n\nThis was identified via kmemleak:\nunreferenced object 0xffff0000205d6878 (size 8):\n  comm \"v4l_id\", pid 5289, jiffies 4294938580\n  hex dump (first 8 bytes):\n    40 d2 49 18 00 00 ff ff                          @.I.....\n  backtrace (crc d3204599):\n    kmemleak_alloc+0xc8/0xf0\n    __kvmalloc_node_noprof+0x60c/0x850\n    v4l2_ctrl_handler_init_class+0x1b4/0x2e8 [videodev]\n    vdec_open+0x1f4/0x788 [meson_vdec]\n    v4l2_open+0x144/0x460 [videodev]\n    chrdev_open+0x1ac/0x500\n    do_dentry_open+0x3f0/0xfe8\n    vfs_open+0x68/0x320\n    do_open+0x2d8/0x9a8\n    path_openat+0x1d0/0x4f0\n    do_filp_open+0x190/0x380\n    do_sys_openat2+0xf8/0x1b0\n    __arm64_sys_openat+0x13c/0x1e8\n    invoke_syscall+0xdc/0x268\n    el0_svc_common.constprop.0+0x178/0x258\n    do_el0_svc+0x4c/0x70"}],"affected":[{"product":"Linux","vendor":"Linux","defaultStatus":"unaffected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/staging/media/meson/vdec/vdec.c"],"versions":[{"version":"3e7f51bd96077acad6acd7b45668f65b44233c4e","lessThan":"5f97120d1a50c9efffe54425fac42bb7ef13ac86","status":"affected","versionType":"git"},{"version":"3e7f51bd96077acad6acd7b45668f65b44233c4e","lessThan":"fb77d6f4580f316c9148b942af0028ee489d121e","status":"affected","versionType":"git"},{"version":"3e7f51bd96077acad6acd7b45668f65b44233c4e","lessThan":"d9058a19731036c03a779bfe8c3ca0d9aa198599","status":"affected","versionType":"git"},{"version":"3e7f51bd96077acad6acd7b45668f65b44233c4e","lessThan":"c6cd08a71a630f19b10c318e76e3c56e1dd10e00","status":"affected","versionType":"git"},{"version":"3e7f51bd96077acad6acd7b45668f65b44233c4e","lessThan":"2cf0171ad594860e31723c671e37824ce12c01ea","status":"affected","versionType":"git"},{"version":"3e7f51bd96077acad6acd7b45668f65b44233c4e","lessThan":"1391b75bf0119b5d37f1c1c3078d452a01967f9b","status":"affected","versionType":"git"},{"version":"3e7f51bd96077acad6acd7b45668f65b44233c4e","lessThan":"99f3527bd1a27ff798d59177ed045b0dd87deaef","status":"affected","versionType":"git"},{"version":"3e7f51bd96077acad6acd7b45668f65b44233c4e","lessThan":"940f161f734b25f175a95d2684c2021f6323693a","status":"affected","versionType":"git"}]},{"product":"Linux","vendor":"Linux","defaultStatus":"affected","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","programFiles":["drivers/staging/media/meson/vdec/vdec.c"],"versions":[{"version":"5.3","status":"affected"},{"version":"0","lessThan":"5.3","status":"unaffected","versionType":"semver"},{"version":"5.10.265","lessThanOrEqual":"5.10.*","status":"unaffected","versionType":"semver"},{"version":"5.15.216","lessThanOrEqual":"5.15.*","status":"unaffected","versionType":"semver"},{"version":"6.1.183","lessThanOrEqual":"6.1.*","status":"unaffected","versionType":"semver"},{"version":"6.6.148","lessThanOrEqual":"6.6.*","status":"unaffected","versionType":"semver"},{"version":"6.12.101","lessThanOrEqual":"6.12.*","status":"unaffected","versionType":"semver"},{"version":"6.18.42","lessThanOrEqual":"6.18.*","status":"unaffected","versionType":"semver"},{"version":"7.1.6","lessThanOrEqual":"7.1.*","status":"unaffected","versionType":"semver"},{"version":"7.2","lessThanOrEqual":"*","status":"unaffected","versionType":"original_commit_for_fix"}]}],"cpeApplicability":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.3","versionEndExcluding":"5.10.265"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.3","versionEndExcluding":"5.15.216"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.3","versionEndExcluding":"6.1.183"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.3","versionEndExcluding":"6.6.148"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.3","versionEndExcluding":"6.12.101"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.3","versionEndExcluding":"6.18.42"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.3","versionEndExcluding":"7.1.6"},{"vulnerable":true,"criteria":"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*","versionStartIncluding":"5.3","versionEndExcluding":"7.2"}]}]}],"references":[{"url":"https://git.kernel.org/stable/c/5f97120d1a50c9efffe54425fac42bb7ef13ac86"},{"url":"https://git.kernel.org/stable/c/fb77d6f4580f316c9148b942af0028ee489d121e"},{"url":"https://git.kernel.org/stable/c/d9058a19731036c03a779bfe8c3ca0d9aa198599"},{"url":"https://git.kernel.org/stable/c/c6cd08a71a630f19b10c318e76e3c56e1dd10e00"},{"url":"https://git.kernel.org/stable/c/2cf0171ad594860e31723c671e37824ce12c01ea"},{"url":"https://git.kernel.org/stable/c/1391b75bf0119b5d37f1c1c3078d452a01967f9b"},{"url":"https://git.kernel.org/stable/c/99f3527bd1a27ff798d59177ed045b0dd87deaef"},{"url":"https://git.kernel.org/stable/c/940f161f734b25f175a95d2684c2021f6323693a"}],"title":"media: meson: vdec: Fix memory leak in error path of vdec_open","x_generator":{"engine":"bippy-1.2.0"}}}}