CVE-2026-43218
Description
In the Linux kernel, the following vulnerability has been resolved: media: i2c/tw9903: Fix potential memory leak in tw9903_probe() In one of the error paths in tw9903_probe(), the memory allocated in v4l2_ctrl_handler_init() and v4l2_ctrl_new_std() is not freed. Fix that by calling v4l2_ctrl_handler_free() on the handler in that error path.
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ if you've already worked around this in production โ publish your fix to the community-verified tier.
โ Propose a mitigation on Community โ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
OS impact
Linux kernel Affected 1 release
| Version | Status | Fixed in |
|---|---|---|
| โ | Affected | 5.10.252 |
SUSE Affected 1 release
| Version | Status | Fixed in |
|---|---|---|
| โ | Affected | โ |
Debian Fixed 5 releases
| Version | Status | Fixed in |
|---|---|---|
| trixie | Fixed | 6.12.85-1 |
| sid | Fixed | 6.19.6-1 |
| forky | Fixed | 6.19.6-1 |
| bullseye | Fixed | 5.10.257-1 |
| bookworm | Fixed | 6.1.170-1 |
References
- https://git.kernel.org/stable/c/32f0493506313775d3bd448de34762b6538da6bd
- https://git.kernel.org/stable/c/92537a15780b6d0281fd8286f93fbc3652e35f48
- https://git.kernel.org/stable/c/9cb9eca33d20316ed3c7a938793b8735ac3e128b
- https://git.kernel.org/stable/c/9cea16fea47e5553f51d10957677ff735b1eff03
- https://git.kernel.org/stable/c/a114918270f0d95c607d69b03a244e6afe54813f
- https://git.kernel.org/stable/c/add02a3fb1fd71b004f0ed824cbac00f850de558
- https://git.kernel.org/stable/c/cc7aeed33e4f55c76f35f0fca73e4dfe12a63a3a
- https://git.kernel.org/stable/c/e54aa17c968c4de2c5f7b7ea390c63d33c07513b
- https://www.suse.com/security/cve/CVE-2026-43218.html
- https://security-tracker.debian.org/tracker/CVE-2026-43218
CWEs
CWE-401
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.