HomeDefectsLIN1023-32610
Fixed

LIN1023-32610 : Security Advisory - linux - CVE-2026-97579

Created: Sep 25, 2026    Updated: Oct 2, 2026
Resolved Date: Oct 2, 2026
Found In Version: 10.23.30.2
Fix Version: 10.23.30.9
Severity: Standard
Applicable for: Wind River Linux LTS 23
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:  media: mediatek: vcodec: bound AV1 tile-start copy to the array capacity  vdec_av1_slice_setup_tile() copies tile_cols + 1 / tile_rows + 1 entries into mi_col_starts[] / mi_row_starts[] from the bitstream tile_info. Bound the copy to the array capacity.
Data source: kernel.org (416baaa9-dc9f-4396-8d5f-8c081fb06d67)