Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's virtio GPU driver can lead to a NULL pointer dereference. This issue arises in the 'virtio_gpu_array_put_free()' function, which can be called with a NULL 'objs' parameter if the 'virtio_gpu_object_shmem_init()' function fails. Such a failure could occur due to fault injection, as reported by syzbot.
Exploitation of this vulnerability can cause a kernel panic by dereferencing a NULL pointer, leading to a denial of service.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.