CVE-2026-43246
Description
In the Linux kernel, the following vulnerability has been resolved: media: i2c/tw9906: Fix potential memory leak in tw9906_probe() In one of the error paths in tw9906_probe(), the memory allocated in v4l2_ctrl_handler_init() and v4l2_ctrl_new_std() is not freed. Fix that by calling v4l2_ctrl_handler_free() on the handler in that error path.
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ if you've already worked around this in production โ publish your fix to the community-verified tier.
โ Propose a mitigation on Community โ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
OS impact
| OS | Version | Status | Fixed in |
|---|---|---|---|
| sles | affected | | |
| debian | bookworm | fixed | 6.1.170-1 |
| debian | bullseye | fixed | 5.10.257-1 |
| debian | forky | fixed | 6.19.6-1 |
| debian | sid | fixed | 6.19.6-1 |
| debian | trixie | fixed | 6.12.85-1 |
| linux-kernel | affected | 5.10.252 |
References
- https://git.kernel.org/stable/c/0c33338514d8246280533a77091e6b6ee548c606
- https://git.kernel.org/stable/c/377a7756914364d72550fc86ca0f404ef1d96141
- https://git.kernel.org/stable/c/59420d5d9c46b084e21f9ea6ce79fc79ae9e414c
- https://git.kernel.org/stable/c/9548a8bbf511a252a9848f96220c6b95c9a3b918
- https://git.kernel.org/stable/c/cad237b6c875fbee5d353a2b289e98d240d17ec8
- https://git.kernel.org/stable/c/ccb92def042a3636ed47f25a30bd553788e5191e
- https://git.kernel.org/stable/c/e9a490937942f18205dac7b6b192975ef1369ae1
- https://git.kernel.org/stable/c/fb09d8b80046216646f1a344410cfa9cfa6c6c7c
- https://www.suse.com/security/cve/CVE-2026-43246.html
- https://security-tracker.debian.org/tracker/CVE-2026-43246
CWEs
CWE-401
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.