Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A null pointer dereference vulnerability has been identified in the Linux kernel's Rockchip VOP2 driver, specifically in the handling of video ports on the RK3576 platform. The issue arises because the VOP2 windows, which are supposed to be designated as primary planes for specific video ports, may not be properly assigned. This lack of a primary window can lead to a null pointer dereference when the system attempts to initialize the display pipeline using a non-existent primary plane.
Exploitation of this vulnerability leads to a null pointer dereference, causing a crash of the affected component or system.
Users can upgrade to the latest version of the Linux kernel where this vulnerability has been addressed. The specific commit that resolves this issue is available in the Linux kernel stable tree.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.