CVE-2020-36786

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
28/02/2024
Last modified:
06/12/2024

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> media: [next] staging: media: atomisp: fix memory leak of object flash<br /> <br /> In the case where the call to lm3554_platform_data_func returns an<br /> error there is a memory leak on the error return path of object<br /> flash. Fix this by adding an error return path that will free<br /> flash and rename labels fail2 to fail3 and fail1 to fail2.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.10 (including) 5.10.37 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.11 (including) 5.11.21 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.12 (including) 5.12.4 (excluding)