PT-2026-98518 · Linux · Linux Kernel
CVE-2026-97578
·
Published
2026-09-25
·
Updated
2026-09-25
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
An issue exists in the
rockchip vpu981 av1 dec set tile info() function where the system divides context update tile id by tile info->tile cols. Because tile cols and tile rows are derived from the bitstream, a zero value for tile cols could lead to a division by zero. Additionally, the function writes descriptors into the tile info DMA buffer, which has a fixed capacity of AV1 MAX TILES entries, without sufficient bounds checking to prevent buffer overflow when the buffer is full.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel