Home

Description

In the Linux kernel, the following vulnerability has been resolved: media: vidtv: fix pass-by-value structs causing MSAN warnings vidtv_ts_null_write_into() and vidtv_ts_pcr_write_into() take their argument structs by value, causing MSAN to report uninit-value warnings. While only vidtv_ts_null_write_into() has triggered a report so far, both functions share the same issue. Fix by passing both structs by const pointer instead, avoiding the stack copy of the struct along with its MSAN shadow and origin metadata. The functions do not modify the structs, which is enforced by the const qualifier.

PUBLISHED Reserved 2026-05-01 | Published 2026-05-02 | Updated 2026-05-02 | Assigner Linux

Product status

Default status
unaffected

f90cf6079bf67988f8b1ad1ade70fc89d0080905 (git) before e3957eb26a3d570aefc6bb184fa8b8a1e9a4e508
affected

f90cf6079bf67988f8b1ad1ade70fc89d0080905 (git) before be57e52e27c7cbfb400a8f255e475cbcff242baa
affected

f90cf6079bf67988f8b1ad1ade70fc89d0080905 (git) before 6d75a9ec5bdb8cf8382eaf8f8fe831ba7d58a9d4
affected

f90cf6079bf67988f8b1ad1ade70fc89d0080905 (git) before 57b01d945ed68cebe486d495dadc4901a96d3aaa
affected

f90cf6079bf67988f8b1ad1ade70fc89d0080905 (git) before 1b2820c8a9887981634020db19f1a2425558b88e
affected

f90cf6079bf67988f8b1ad1ade70fc89d0080905 (git) before 5f8e73bde67e931468bc2a1860d78d72f0c6ba41
affected

Default status
affected

5.10
affected

Any version before 5.10
unaffected

6.6.136 (semver)
unaffected

6.12.83 (semver)
unaffected

6.18.24 (semver)
unaffected

6.19.14 (semver)
unaffected

7.0.1 (semver)
unaffected

7.1-rc1 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/e3957eb26a3d570aefc6bb184fa8b8a1e9a4e508

git.kernel.org/...c/be57e52e27c7cbfb400a8f255e475cbcff242baa

git.kernel.org/...c/6d75a9ec5bdb8cf8382eaf8f8fe831ba7d58a9d4

git.kernel.org/...c/57b01d945ed68cebe486d495dadc4901a96d3aaa

git.kernel.org/...c/1b2820c8a9887981634020db19f1a2425558b88e

git.kernel.org/...c/5f8e73bde67e931468bc2a1860d78d72f0c6ba41

cve.org (CVE-2026-43058)

nvd.nist.gov (CVE-2026-43058)

Download JSON