Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's DRM MSM DPU subsystem has been addressed by adding a missing NULL pointer check in the writeback encoder's physical interface. This vulnerability could lead to a NULL pointer dereference, causing a potential denial-of-service condition. The issue was present in the writeback encoder's setup control function, where the NULL pointer check for the pingpong interface was omitted in one instance. The vulnerability affects the stable versions of the Linux kernel.
The vulnerability could lead to a NULL pointer dereference, causing a denial-of-service condition by crashing the system or causing the kernel to become unresponsive.
The vulnerability can be reproduced by invoking the writeback encoder's setup control function without the necessary NULL pointer check in place. This can be done by creating a scenario where the pingpong interface is not properly initialized, leading to a NULL pointer being accessed.
Users can upgrade to the latest stable version of the Linux kernel, where this vulnerability has been addressed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.