CVE-2026-68210

Source
https://cve.org/CVERecord?id=CVE-2026-68210
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68210.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-68210
Downstream
Published
2026-08-10T12:00:29.515Z
Modified
2026-08-14T04:04:00.387703123Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
media: stm32: dcmi: unregister notifier on probe failure
Details

In the Linux kernel, the following vulnerability has been resolved:

media: stm32: dcmi: unregister notifier on probe failure

dcmigraphinit() registers the async notifier before dcmiprobe() toggles the reset line. If resetcontrolassert() or resetcontroldeassert() fails afterwards, probe returns through errcleanup and the driver core will not call dcmi_remove().

Unregister the notifier before cleaning it up on that error path, matching the successful remove path and the V4L2 async notifier lifetime rules.

[hverkuil: added Fixes tag]

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68210.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d079f94c90469f413920b9f2b201537fac2ceb06
Fixed
37ff63c5d7119cbc5c6bacdcc658add6008a8e1f
Fixed
6c6f22b7e6cbc4e8c1e359fc9b190419391c3db7
Fixed
931abe1deb65b919d23fa203d7f6d6fbd4fccd8e
Fixed
4b7ee504969e074725e439c949f2483e5fa5572a
Fixed
084973ebd67b28f0945c5d45408f86c58b540110

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68210.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
6.6.148
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.101
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.42
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-68210.json"