HIGH 7.8 NVD
CVE-2026-89888
In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov02a10: fix endpoint parsing use-after-free The ov02a10_check_hwcfg() functio
In the Linux kernel, the following vulnerability has been resolved:
media: i2c: ov02a10: fix endpoint parsing use-after-free
The ov02a10_check_hwcfg() function calls fwnode_handle_put(ep)
immediately after allocating and parsing the endpoint. However, it
subsequently calls fwnode_property_read_u32() using the same 'ep'
handle, leading to a potential use-after-free.
Additionally, reading the optional 'ovti,mipi-clock-voltage' property
used to overwrite the 'ret' variable. If the property was missing,
'ret' would become negative, and this failure code would be incorrectly
returned at the end of the function, causing probe to fail entirely.
Fix the use-after-free by moving fwnode_property_read_u32() before
the endpoint is parsed and freed. Avoid the error leak by not
assigning the result of fwnode_property_read_u32() to 'ret'.
References
- https://git.kernel.org/stable/c/213b2489130357c8d3e8d4fb2bdab88791ce3185
- https://git.kernel.org/stable/c/4c2988bf1ad2753240a38db10ce23e87ec542f8f
- https://git.kernel.org/stable/c/6e13784452785cd8402b228bea53bc6a027ade84
- https://git.kernel.org/stable/c/8ddb3b69f67b0632ff3830da18de3e8dcaf5884b
- https://git.kernel.org/stable/c/90f9b421fc6d4f2edab7521efdb1e58571468d33
This high severity vulnerability with a CVSS score of 7.8 was published on 2026-09-16 via NVD.
vulnfeed aggregates 14391 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.