PT-2026-98518 · Linux · Linux Kernel

CVE-2026-97578

·

Published

2026-09-25

·

Updated

2026-09-25

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the rockchip vpu981 av1 dec set tile info() function where the system divides context update tile id by tile info->tile cols. Because tile cols and tile rows are derived from the bitstream, a zero value for tile cols could lead to a division by zero. Additionally, the function writes descriptors into the tile info DMA buffer, which has a fixed capacity of AV1 MAX TILES entries, without sufficient bounds checking to prevent buffer overflow when the buffer is full.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-97578

Affected Products

Linux Kernel