Improper Check or Handling of Exceptional Conditions in Linux kernel - CVE-2026-89871
Published: September 17, 2026
Vulnerability identifier: #VU150411
CSH Severity: Low
CVSS v4: 5.7 [CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-89871
CWE-ID: CWE-703
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper error handling in the video-i2c driver's streaming functions when a capture-thread startup fails. A local user can invoke streaming operations after a capture-thread startup failure to cause a denial of service.
Affected software
Linux kernel
How to mitigate CVE-2026-89871
Install security update from vendor's repository.
External References
- https://git.kernel.org/stable/c/0e7f2cd72a4f9268ee09a13b13f3339e7cc71557
- https://git.kernel.org/stable/c/0fac63cac6689588da530764ccb6ba55ee8e4d8b
- https://git.kernel.org/stable/c/3d1b10d81fe54852ed953f4129577b733bbd6907
- https://git.kernel.org/stable/c/52fd9d80c0cea7bf09e7ee36cad316e5c39b7fe6
- https://git.kernel.org/stable/c/5c35d380bea60503c4fe0986fe1de6a3263282b3
- https://git.kernel.org/stable/c/76e379754ba618989f6215be608d5c04774a611d
- https://git.kernel.org/stable/c/968c5213e34c48d35febdfd09cf3dc58ad039140
- https://git.kernel.org/stable/c/db0f4531aa55cfb0171684ebfffe3ff04b79d5a8