CVE-2026-68207
In the Linux kernel, the following vulnerability has been resolved:
media: ti: vpe: unwind v4l2 device registration on probe error
If the vpe_top resource is missing, vpe_probe() returns -ENODEV after v4l2_device_register() has succeeded. Probe failures do not call the driver's remove callback, so the v4l2 device remains registered on that error path.
Route that failure through the existing v4l2_device_unregister() unwind label, matching the other errors after v4l2_device_register().
CVSS
NVD no ha asignado puntuación CVSS a esta CVE (habitual desde el cambio de política de abril de 2026).
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.21%
- Percentil entre todas las CVEs puntuadas: 11
- Fecha de la puntuación: 5/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.
Referencias
- https://git.kernel.org/stable/c/0f0a60c000876bcd808a70d602c758c2e64c77d8
- https://git.kernel.org/stable/c/4ecf0cc0cf59032a89bcdf36fbbb03bff5455fd9
- https://git.kernel.org/stable/c/7d383357905de975e1dbde639e5fa7477075d104
- https://git.kernel.org/stable/c/7e6521dd747eca3cb3d4cd3ddcf20f266494f63d
- https://git.kernel.org/stable/c/e0f1c9a90ef665f2587c274a8fed59f2dfc575a6
- https://git.kernel.org/stable/c/fcbbaf9cb9722a82f0221c56114037fc537f4ada
JSON original (NVD)
Mostrar
{
"id": "CVE-2026-68207",
"cveTags": [],
"metrics": {},
"affected": [
{
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
"affectedData": [
{
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"vendor": "Linux",
"product": "Linux",
"versions": [
{
"status": "affected",
"version": "4d59c7d455853edca990848b1cb7c482b4628f32",
"lessThan": "0f0a60c000876bcd808a70d602c758c2e64c77d8",
"versionType": "git"
},
{
"status": "affected",
"version": "4d59c7d455853edca990848b1cb7c482b4628f32",
"lessThan": "4ecf0cc0cf59032a89bcdf36fbbb03bff5455fd9",
"versionType": "git"
},
{
"status": "affected",
"version": "4d59c7d455853edca990848b1cb7c482b4628f32",
"lessThan": "7d383357905de975e1dbde639e5fa7477075d104",
"versionType": "git"
},
{
"status": "affected",
"version": "4d59c7d455853edca990848b1cb7c482b4628f32",
"lessThan": "7e6521dd747eca3cb3d4cd3ddcf20f266494f63d",
"versionType": "git"
},
{
"status": "affected",
"version": "4d59c7d455853edca990848b1cb7c482b4628f32",
"lessThan": "fcbbaf9cb9722a82f0221c56114037fc537f4ada",
"versionType": "git"
},
{
"status": "affected",
"version": "4d59c7d455853edca990848b1cb7c482b4628f32",
"lessThan": "e0f1c9a90ef665f2587c274a8fed59f2dfc575a6",
"versionType": "git"
}
],
"programFiles": [
"drivers/media/platform/ti/vpe/vpe.c"
],
"defaultStatus": "unaffected"
},
{
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"vendor": "Linux",
"product": "Linux",
"versions": [
{
"status": "affected",
"version": "5.5"
},
{
"status": "unaffected",
"version": "0",
"lessThan": "5.5",
"versionType": "semver"
},
{
"status": "unaffected",
"version": "6.1.183",
"versionType": "semver",
"lessThanOrEqual": "6.1.*"
},
{
"status": "unaffected",
"version": "6.6.148",
"versionType": "semver",
"lessThanOrEqual": "6.6.*"
},
{
"status": "unaffected",
"version": "6.12.101",
"versionType": "semver",
"lessThanOrEqual": "6.12.*"
},
{
"status": "unaffected",
"version": "6.18.42",
"versionType": "semver",
"lessThanOrEqual": "6.18.*"
},
{
"status": "unaffected",
"version": "7.1.6",
"versionType": "semver",
"lessThanOrEqual": "7.1.*"
},
{
"status": "unaffected",
"version": "7.2",
"versionType": "original_commit_for_fix",
"lessThanOrEqual": "*"
}
],
"programFiles": [
"drivers/media/platform/ti/vpe/vpe.c"
],
"defaultStatus": "affected"
}
]
}
],
"published": "2026-08-10T13:20:08.400",
"references": [
{
"url": "https://git.kernel.org/stable/c/0f0a60c000876bcd808a70d602c758c2e64c77d8",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/4ecf0cc0cf59032a89bcdf36fbbb03bff5455fd9",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/7d383357905de975e1dbde639e5fa7477075d104",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/7e6521dd747eca3cb3d4cd3ddcf20f266494f63d",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/e0f1c9a90ef665f2587c274a8fed59f2dfc575a6",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
},
{
"url": "https://git.kernel.org/stable/c/fcbbaf9cb9722a82f0221c56114037fc537f4ada",
"source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}
],
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: ti: vpe: unwind v4l2 device registration on probe error\n\nIf the vpe_top resource is missing, vpe_probe() returns -ENODEV after\nv4l2_device_register() has succeeded. Probe failures do not call the\ndriver's remove callback, so the v4l2 device remains registered on that\nerror path.\n\nRoute that failure through the existing v4l2_device_unregister() unwind\nlabel, matching the other errors after v4l2_device_register()."
}
],
"lastModified": "2026-08-19T17:20:36.690",
"sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}