SB2026011442 - Out-of-bounds read in Linux kernel usb dvb-usb driver
Published: January 14, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Out-of-bounds read (CVE-ID: CVE-2025-68819)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to an out-of-bounds read error within the dtv5100_i2c_msg() function in drivers/media/usb/dvb-usb/dtv5100.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/4a54d8fcb093761e4c56eb211cf4e39bf8401fa1
- https://git.kernel.org/stable/c/61f214a878e96e2a8750bf96a98f78c658dba60c
- https://git.kernel.org/stable/c/ac92151ff2494130d9fc686055d6bbb9743a673e
- https://git.kernel.org/stable/c/b91e6aafe8d356086cc621bc03e35ba2299e4788
- https://git.kernel.org/stable/c/fe3e129ab49806aaaa3f22067ebc75c2dfbe4658