Junglewise Threat Intelligence

CVE-2026-43246: Linux Kernel memory leak in tw9906 video decoder probe

CVE-2026-43246 · Severity: medium · CVSS 5.5 · Published 2026-05-06

Technologies: Linux Kernel. Vendors: Linux.

Executive brief

A vulnerability was identified in the Linux kernel's driver for the Techwell TW9906 video decoder. A flaw in how the system handles initialization errors can lead to a memory leak, where system memory is not properly released. Over time, repeated triggers of this error could exhaust available system memory, potentially leading to a system crash or performance degradation.

Technical details

A memory leak exists in the tw9906_probe() function within drivers/media/i2c/tw9906.c of the Linux kernel. The vulnerability occurs because the error handling path for write_regs() fails to call v4l2_ctrl_handler_free(), leaving memory allocated by v4l2_ctrl_handler_init() and v4l2_ctrl_new_std() unreferenced but not freed. A local attacker with the ability to trigger probe failures for this specific i2c device could repeatedly leak memory, eventually leading to a denial of service (DoS) through resource exhaustion. The issue has been resolved by ensuring v4l2_ctrl_handler_free() is called during the affected error path.

Affected products

  • Linux Linux Kernel 3.10 to 5.10.252, 5.11 to 5.15.202, 5.16 to 6.1.165, 6.2 to 6.6.128, 6.7 to 6.12.75, 6.13 to 6.18.16, 6.19 to 6.19.6

Timeline

  • 2026-05-06: disclosed
  • 2026-05-06: advisory
  • 2026-03-04: patched

References

Related threats