Linux Kernel NULL Pointer Dereference Vulnerability in DRM MSM DPU Writeback Encoder

Vulnerability

A vulnerability in the Linux kernel's DRM MSM DPU subsystem has been addressed by adding a missing NULL pointer check in the writeback encoder's physical interface. This vulnerability could lead to a NULL pointer dereference, causing a potential denial-of-service condition. The issue was present in the writeback encoder's setup control function, where the NULL pointer check for the pingpong interface was omitted in one instance. The vulnerability affects the stable versions of the Linux kernel.

Impact

The vulnerability could lead to a NULL pointer dereference, causing a denial-of-service condition by crashing the system or causing the kernel to become unresponsive.

Reproduction

The vulnerability can be reproduced by invoking the writeback encoder's setup control function without the necessary NULL pointer check in place. This can be done by creating a scenario where the pingpong interface is not properly initialized, leading to a NULL pointer being accessed.

Remediation

Users can upgrade to the latest stable version of the Linux kernel, where this vulnerability has been addressed.

Added: Jan 14, 2026, 3:28 PM
Updated: Jan 14, 2026, 4:38 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
3.9
remediation
7.7
relevance
2.1
threat
4.8
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.