media: cx23885: Add missing unmap in snd_cx23885_hw_params()

Summary

CVECVE-2026-43135
StatePUBLISHED
AssignerLinux
Source PriorityCVE Program / NVD first with legacy fallback
Published2026-05-06 12:16:30 UTC
Updated2026-05-12 21:11:19 UTC
DescriptionIn the Linux kernel, the following vulnerability has been resolved: media: cx23885: Add missing unmap in snd_cx23885_hw_params() In error path, add cx23885_alsa_dma_unmap() to release the resource acquired by cx23885_alsa_dma_map().

Risk And Classification

Primary CVSS: v3.1 5.5 MEDIUM from [email protected]

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Problem Types: NVD-CWE-noinfo

CVSS v3.1 Breakdown

Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

NVD Known Affected Configurations (CPE 2.3)

TypeVendorProductVersionUpdateEditionLanguage
Operating System Linux Linux Kernel All All All All

Vendor Declared Affected Products

SourceVendorProductVersionPlatforms
CNA Linux Linux affected 9529a4b0cf49163e489446ec159a2dfb64f78df8 fda46c9025b755ea50a969b960f333be62421b71 git Not specified
CNA Linux Linux affected 9529a4b0cf49163e489446ec159a2dfb64f78df8 0b7f56084cc3d7766bf274b71cd14cc9674b76bf git Not specified
CNA Linux Linux affected 9529a4b0cf49163e489446ec159a2dfb64f78df8 505630dd1ebf4b53d3f2866c057ddd93157a24d8 git Not specified
CNA Linux Linux affected 9529a4b0cf49163e489446ec159a2dfb64f78df8 544215cc37d032ccaf1919852c05e2439a4d7540 git Not specified
CNA Linux Linux affected 9529a4b0cf49163e489446ec159a2dfb64f78df8 9c0a6ff538660c36a98081916a24f08d55a91331 git Not specified
CNA Linux Linux affected 9529a4b0cf49163e489446ec159a2dfb64f78df8 9544b73cad4ee667fed6a60f71570c58a870a735 git Not specified
CNA Linux Linux affected 9529a4b0cf49163e489446ec159a2dfb64f78df8 fc4df593a8ffded2f77d69a73ecb51d364932ca5 git Not specified
CNA Linux Linux affected 9529a4b0cf49163e489446ec159a2dfb64f78df8 141c81849fab2ad4d6e3fdaff7cbaa873e8b5eb2 git Not specified
CNA Linux Linux affected 3.18 Not specified
CNA Linux Linux unaffected 3.18 semver Not specified
CNA Linux Linux unaffected 5.10.252 5.10.* semver Not specified
CNA Linux Linux unaffected 5.15.202 5.15.* semver Not specified
CNA Linux Linux unaffected 6.1.165 6.1.* semver Not specified
CNA Linux Linux unaffected 6.6.128 6.6.* semver Not specified
CNA Linux Linux unaffected 6.12.75 6.12.* semver Not specified
CNA Linux Linux unaffected 6.18.16 6.18.* semver Not specified
CNA Linux Linux unaffected 6.19.6 6.19.* semver Not specified
CNA Linux Linux unaffected 7.0 * original_commit_for_fix Not specified

References

ReferenceSourceLinkTags
git.kernel.org/stable/c/0b7f56084cc3d7766bf274b71cd14cc9674b76bf 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
git.kernel.org/stable/c/9544b73cad4ee667fed6a60f71570c58a870a735 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
git.kernel.org/stable/c/141c81849fab2ad4d6e3fdaff7cbaa873e8b5eb2 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
git.kernel.org/stable/c/fda46c9025b755ea50a969b960f333be62421b71 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
git.kernel.org/stable/c/544215cc37d032ccaf1919852c05e2439a4d7540 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
git.kernel.org/stable/c/505630dd1ebf4b53d3f2866c057ddd93157a24d8 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
git.kernel.org/stable/c/fc4df593a8ffded2f77d69a73ecb51d364932ca5 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
git.kernel.org/stable/c/9c0a6ff538660c36a98081916a24f08d55a91331 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org Patch
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report