{"id":"CVE-2026-68223","summary":"media: meson: vdec: Fix memory leak in error path of vdec_open","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: meson: vdec: Fix memory leak in error path of vdec_open\n\nThe vdec_open() function previously jumped directly to\nerr_m2m_release when vdec_init_ctrls() failed, skipping\nrelease of the m2m context. This caused a resource leak.\n\nFix it by introducing a proper err_m2m_ctx_release label\nthat calls v4l2_m2m_ctx_release(sess-\u003em2m_ctx) before\nreleasing the m2m device.\n\nThis was identified via kmemleak:\nunreferenced object 0xffff0000205d6878 (size 8):\n  comm \"v4l_id\", pid 5289, jiffies 4294938580\n  hex dump (first 8 bytes):\n    40 d2 49 18 00 00 ff ff                          @.I.....\n  backtrace (crc d3204599):\n    kmemleak_alloc+0xc8/0xf0\n    __kvmalloc_node_noprof+0x60c/0x850\n    v4l2_ctrl_handler_init_class+0x1b4/0x2e8 [videodev]\n    vdec_open+0x1f4/0x788 [meson_vdec]\n    v4l2_open+0x144/0x460 [videodev]\n    chrdev_open+0x1ac/0x500\n    do_dentry_open+0x3f0/0xfe8\n    vfs_open+0x68/0x320\n    do_open+0x2d8/0x9a8\n    path_openat+0x1d0/0x4f0\n    do_filp_open+0x190/0x380\n    do_sys_openat2+0xf8/0x1b0\n    __arm64_sys_openat+0x13c/0x1e8\n    invoke_syscall+0xdc/0x268\n    el0_svc_common.constprop.0+0x178/0x258\n    do_el0_svc+0x4c/0x70","modified":"2026-08-21T03:30:19.283040144Z","published":"2026-08-10T12:00:44.123Z","database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68223.json","cna_assigner":"Linux"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/1391b75bf0119b5d37f1c1c3078d452a01967f9b"},{"type":"WEB","url":"https://git.kernel.org/stable/c/2cf0171ad594860e31723c671e37824ce12c01ea"},{"type":"WEB","url":"https://git.kernel.org/stable/c/5f97120d1a50c9efffe54425fac42bb7ef13ac86"},{"type":"WEB","url":"https://git.kernel.org/stable/c/940f161f734b25f175a95d2684c2021f6323693a"},{"type":"WEB","url":"https://git.kernel.org/stable/c/99f3527bd1a27ff798d59177ed045b0dd87deaef"},{"type":"WEB","url":"https://git.kernel.org/stable/c/c6cd08a71a630f19b10c318e76e3c56e1dd10e00"},{"type":"WEB","url":"https://git.kernel.org/stable/c/d9058a19731036c03a779bfe8c3ca0d9aa198599"},{"type":"WEB","url":"https://git.kernel.org/stable/c/fb77d6f4580f316c9148b942af0028ee489d121e"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/68xxx/CVE-2026-68223.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-68223"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"3e7f51bd96077acad6acd7b45668f65b44233c4e"},{"fixed":"5f97120d1a50c9efffe54425fac42bb7ef13ac86"},{"fixed":"fb77d6f4580f316c9148b942af0028ee489d121e"},{"fixed":"d9058a19731036c03a779bfe8c3ca0d9aa198599"},{"fixed":"c6cd08a71a630f19b10c318e76e3c56e1dd10e00"},{"fixed":"2cf0171ad594860e31723c671e37824ce12c01ea"},{"fixed":"1391b75bf0119b5d37f1c1c3078d452a01967f9b"},{"fixed":"99f3527bd1a27ff798d59177ed045b0dd87deaef"},{"fixed":"940f161f734b25f175a95d2684c2021f6323693a"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-68223.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"5.3.0"},{"fixed":"5.10.265"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.216"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.1.183"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.148"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.12.101"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"6.18.42"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.19.0"},{"fixed":"7.1.6"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-68223.json"}}],"schema_version":"1.9.0"}