Linux Kernel Crypto CCP Uninitialized Pointer Dereference Vulnerability

Vulnerability

A vulnerability in the Linux kernel's crypto component, specifically within the CCP (Cryptographic Coprocessor) driver, has been addressed. The issue involved dereferencing an uninitialized error pointer, which could lead to unexpected behavior. This vulnerability was identified in the stable tree of the Linux kernel.

Impact

The vulnerability could cause a null pointer dereference, leading to potential memory corruption or undefined behavior in the kernel.

Added: Sep 7, 2025, 4:26 PM
Updated: Sep 7, 2025, 4:26 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
4.0
remediation
7.7
relevance
0.5
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.