CVE-2026-97514

Summary

In the Linux kernel, the following vulnerability has been resolved:

media: chips-media: wave5: Fix Reports from Kernel Lock Validator

handle_dynamic_resolution change requires that the state_lock be acquired based on the lockdep_assert_held. However, the handle_dynamic_resolution_change call in initialize_sequence does not properly obtain the lock before calling.

Since the v4l2_ctrl_find and s_ctrl can sleep, they should not be called while a lock is already held. Store off the fbc_buf_count then properly update control once lock has been freed.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 629a937091ecf9c5c9f7a18f41cb0e6c778a7b2faffected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 072beef6a19f9c84dc5a50c5499663a5734c1096affected
LinuxLinux1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 7d5d364f8b2dcc9b6b92456fb55632fde4a4d96faffected
LinuxLinux0 < 6.12.111affected
LinuxLinux0 < 6.18.53affected
LinuxLinux6.12.111 <= 6.12.*unaffected
LinuxLinux6.18.53 <= 6.18.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References