Answer in brief
CVE-2026-89876 records a Unknown severity vulnerability in media: tda18250: fix possible integer overflow. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=148abd3b5b146021a637d36ac5c0ee91cd4ad520 <cf8e3b3d7d9a6a96f4df6246e2e14b32f58d889e || >=148abd3b5b146021a637d36ac5c0ee91cd4ad520 <4e21f0e5696d3148b183c7e21dd44f7dec0d07ef || >=148abd3b5b146021a637d36ac5c0ee91cd4ad520 <3e5568d554c5f6da2cbba45684295927ebefd943 || >=148abd3b5b146021a637d36ac5c0ee91cd4ad520 <593b1172e5d548581dfdb9a63713088f5dfab255 || >=148abd3b5b146021a637d36ac5c0ee91cd4ad520 <0e0fbdb4c9381e2ea647a3fe3bf39bdb02ea5b73 || >=148abd3b5b146021a637d36ac5c0ee91cd4ad520 <7c62bd653563939ff0d0fdfd4b8c73c4f97a1dcc || >=148abd3b5b146021a637d36ac5c0ee91cd4ad520 <f1ba602afd5ee6609fd71a0d112d18e8447a485f || >=148abd3b5b146021a637d36ac5c0ee91cd4ad520 <6dd8e257f7cafda7fbf10d81b3c55c9bba4825f4 | cf8e3b3d7d9a6a96f4df6246e2e14b32f58d889e, 4e21f0e5696d3148b183c7e21dd44f7dec0d07ef, 3e5568d554c5f6da2cbba45684295927ebefd943, 593b1172e5d548581dfdb9a63713088f5dfab255, 0e0fbdb4c9381e2ea647a3fe3bf39bdb02ea5b73, 7c62bd653563939ff0d0fdfd4b8c73c4f97a1dcc, f1ba602afd5ee6609fd71a0d112d18e8447a485f, 6dd8e257f7cafda7fbf10d81b3c55c9bba4825f4 |
| Linux/Linuxgeneric | 4.16 | Not reported |
Published upstream
Sep 16, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Sep 16, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Sep 16, 2026
In the Linux kernel, the following vulnerability has been resolved: media: tda18250: fix possible integer overflow Integer overflow may occur, when variable exp equals to zero. Result of shift 1 << (exp - 1) may then leads to undefined behavior.
Quoted source text, attributed separately from HOL analysis.