staging: media: tegra-video: fix of_node_put() on VIP parse errors

Summary

CVECVE-2026-93223
StatePUBLISHED
AssignerLinux
Source PriorityCVE Program / NVD first with legacy fallback
Published2026-09-24 16:17:17 UTC
Updated2026-09-24 16:17:17 UTC
DescriptionIn the Linux kernel, the following vulnerability has been resolved: staging: media: tegra-video: fix of_node_put() on VIP parse errors tegra_vip_channel_of_parse() initializes np from dev->of_node without taking a reference, but its error paths drop one through the err_node_put label. This underflows the refcount of the VIP device's OF node when endpoint parsing fails on a malformed device tree. The only reference the function takes on np is the success-path of_node_get() stored in vip->chan.of_node, and that one is already released by the tegra_vip_init() error path and by tegra_vip_exit(). Return errors directly instead of jumping to the bogus cleanup label.

Vendor Declared Affected Products

SourceVendorProductVersionPlatforms
CNA Linux Linux affected e740d199cf0ff1e53ddc2ab067c0a09b55845d68 a3783800c9475fa58b8db0885893f96a23f949da git Not specified
CNA Linux Linux affected e740d199cf0ff1e53ddc2ab067c0a09b55845d68 1295ba29ac590bbb5c4a586afd408018168af10b git Not specified
CNA Linux Linux affected e740d199cf0ff1e53ddc2ab067c0a09b55845d68 656d047dc0c29c0964d840217a0593f16aa9bc5e git Not specified
CNA Linux Linux affected e740d199cf0ff1e53ddc2ab067c0a09b55845d68 fc9937019cf7e2fe4e29f9341e6400bcd2cde721 git Not specified
CNA Linux Linux affected e740d199cf0ff1e53ddc2ab067c0a09b55845d68 7393372f79db940acff206b43e2905685a0c57ad git Not specified
CNA Linux Linux affected 6.5 Not specified
CNA Linux Linux unaffected 6.5 semver Not specified
CNA Linux Linux unaffected 6.6.157 6.6.* semver Not specified
CNA Linux Linux unaffected 6.12.109 6.12.* semver Not specified
CNA Linux Linux unaffected 6.18.50 6.18.* semver Not specified
CNA Linux Linux unaffected 7.2.4 7.2.* semver Not specified
CNA Linux Linux unaffected 7.3-rc1 * original_commit_for_fix Not specified

References

ReferenceSourceLinkTags
git.kernel.org/stable/c/fc9937019cf7e2fe4e29f9341e6400bcd2cde721 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/7393372f79db940acff206b43e2905685a0c57ad 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/656d047dc0c29c0964d840217a0593f16aa9bc5e 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/a3783800c9475fa58b8db0885893f96a23f949da 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
git.kernel.org/stable/c/1295ba29ac590bbb5c4a586afd408018168af10b 416baaa9-dc9f-4396-8d5f-8c081fb06d67 git.kernel.org
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report