Linux Kernel NULL Pointer Dereference Vulnerability in Zynqmp Audio Initialization

Vulnerability

A vulnerability in the Linux kernel's DRM subsystem for Xilinx Zynq UltraScale+ MPSoC has been addressed. The issue arose because the 'devm_kasprintf()' function calls in 'zynqmp_audio_init()' did not properly check for NULL return values, potentially leading to dereferencing null pointers in subsequent code. This vulnerability has been resolved by adding the necessary NULL checks, ensuring that null pointers are not referenced, which could have caused instability or crashes.

Impact

The vulnerability could lead to a NULL pointer dereference, causing a crash or instability in the system.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
4.0
remediation
0.0
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.