Linux Kernel Qcom SCM Firmware NULL Pointer Dereference Vulnerability

Vulnerability

A vulnerability in the Linux kernel's handling of the Qualcomm Secure Communication Manager (SCM) firmware can lead to a NULL pointer dereference. This issue arises because the function 'qcom_scm_get_tzmem_pool()' can return NULL, and its users need to implement proper checks to handle this possibility. The vulnerability has been addressed in the Linux kernel.

Impact

Exploitation of this vulnerability can lead to a NULL pointer dereference, causing a kernel crash or potentially allowing for arbitrary code execution in kernel space.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
4.0
remediation
0.0
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.