Home

Description

In the Linux kernel, the following vulnerability has been resolved: media: mediatek: vcodec: Fix a resource leak related to the scp device in FW initialization On Mediatek devices with a system companion processor (SCP) the mtk_scp structure has to be removed explicitly to avoid a resource leak. Free the structure in case the allocation of the firmware structure fails during the firmware initialization.

PUBLISHED Reserved 2025-01-11 | Published 2025-05-01 | Updated 2026-05-23 | Assigner Linux

Product status

Default status
unaffected

eeb62bb4ca22db17f7dfe8fb8472e0442df3d92f (git) before 69dd5bbdd79c65445bb17c3c53510783bc1d756c
affected

f066882293b5ad359e44c4ed24ab1811ffb0b354 (git) before fd7bb97ede487b9f075707b7408a9073e0d474b1
affected

53dbe08504442dc7ba4865c09b3bbf5fe849681b (git) before 9f009fa823c54ca0857c81f7525ea5a5d32de29c
affected

53dbe08504442dc7ba4865c09b3bbf5fe849681b (git) before d6cb086aa52bd51378a4c9e2b25d2def97770205
affected

53dbe08504442dc7ba4865c09b3bbf5fe849681b (git) before ac94e1db4b2053059779472eb58a64d504964240
affected

53dbe08504442dc7ba4865c09b3bbf5fe849681b (git) before 4936cd5817af35d23e4d283f48fa59a18ef481e4
affected

3a693c7e243b932faee5c1fb728efa73f0abc39b (git)
affected

6.1.130 (semver) before 6.1.153
affected

6.6.36 (semver) before 6.6.88
affected

6.9.7 (semver) before 6.10
affected

Default status
affected

6.10
affected

Any version before 6.10
unaffected

6.1.153 (semver)
unaffected

6.6.88 (semver)
unaffected

6.12.24 (semver)
unaffected

6.13.12 (semver)
unaffected

6.14.3 (semver)
unaffected

6.15 (original_commit_for_fix)
unaffected

References

lists.debian.org/debian-lts-announce/2025/10/msg00008.html

cert-portal.siemens.com/productcert/html/ssa-032379.html

git.kernel.org/...c/69dd5bbdd79c65445bb17c3c53510783bc1d756c

git.kernel.org/...c/fd7bb97ede487b9f075707b7408a9073e0d474b1

git.kernel.org/...c/9f009fa823c54ca0857c81f7525ea5a5d32de29c

git.kernel.org/...c/d6cb086aa52bd51378a4c9e2b25d2def97770205

git.kernel.org/...c/ac94e1db4b2053059779472eb58a64d504964240

git.kernel.org/...c/4936cd5817af35d23e4d283f48fa59a18ef481e4

cve.org (CVE-2025-23160)

nvd.nist.gov (CVE-2025-23160)

Download JSON