{"id":"CVE-2026-89876","summary":"media: tda18250: fix possible integer overflow","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nmedia: tda18250: fix possible integer overflow\n\nInteger overflow may occur, when variable exp equals to zero. Result\nof shift 1 \u003c\u003c (exp - 1) may then leads to undefined behavior.","modified":"2026-09-18T03:48:33.747924437Z","published":"2026-09-16T10:31:43.473Z","database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/89xxx/CVE-2026-89876.json"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/0e0fbdb4c9381e2ea647a3fe3bf39bdb02ea5b73"},{"type":"WEB","url":"https://git.kernel.org/stable/c/3e5568d554c5f6da2cbba45684295927ebefd943"},{"type":"WEB","url":"https://git.kernel.org/stable/c/4e21f0e5696d3148b183c7e21dd44f7dec0d07ef"},{"type":"WEB","url":"https://git.kernel.org/stable/c/593b1172e5d548581dfdb9a63713088f5dfab255"},{"type":"WEB","url":"https://git.kernel.org/stable/c/6dd8e257f7cafda7fbf10d81b3c55c9bba4825f4"},{"type":"WEB","url":"https://git.kernel.org/stable/c/7c62bd653563939ff0d0fdfd4b8c73c4f97a1dcc"},{"type":"WEB","url":"https://git.kernel.org/stable/c/cf8e3b3d7d9a6a96f4df6246e2e14b32f58d889e"},{"type":"WEB","url":"https://git.kernel.org/stable/c/f1ba602afd5ee6609fd71a0d112d18e8447a485f"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/89xxx/CVE-2026-89876.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-89876"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"148abd3b5b146021a637d36ac5c0ee91cd4ad520"},{"fixed":"cf8e3b3d7d9a6a96f4df6246e2e14b32f58d889e"},{"fixed":"4e21f0e5696d3148b183c7e21dd44f7dec0d07ef"},{"fixed":"3e5568d554c5f6da2cbba45684295927ebefd943"},{"fixed":"593b1172e5d548581dfdb9a63713088f5dfab255"},{"fixed":"0e0fbdb4c9381e2ea647a3fe3bf39bdb02ea5b73"},{"fixed":"7c62bd653563939ff0d0fdfd4b8c73c4f97a1dcc"},{"fixed":"f1ba602afd5ee6609fd71a0d112d18e8447a485f"},{"fixed":"6dd8e257f7cafda7fbf10d81b3c55c9bba4825f4"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89876.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"4.16.0"},{"fixed":"5.10.270"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.221"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.1.188"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.157"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.12.110"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"6.18.51"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.19.0"},{"fixed":"7.2.5"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-89876.json"}}],"schema_version":"1.9.0"}