Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A race condition vulnerability has been identified in the Linux kernel's Tegra210-Quad SPI driver. The issue arises in the interrupt service routine (ISR) thread, where a NULL check on the current transfer pointer can be improperly synchronized. This lack of synchronization may lead to a NULL pointer dereference, causing a potential crash or undefined behavior. The vulnerability occurs in the SPI subsystem, specifically within the Tegra210-Quad implementation.
Exploitation of this vulnerability can lead to a NULL pointer dereference, causing a crash or undefined behavior in the system.
Users can apply the patch available in the Linux kernel stable tree to address this vulnerability. The patch is included in the official Linux kernel repositories.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.