Linux Kernel RDMA/Ionic NULL Pointer Dereference Vulnerability in Port Query Function

Vulnerability

A vulnerability in the Linux kernel's RDMA Ionic driver could lead to a NULL pointer dereference. The issue arises in the 'ionic_query_port()' function, which calls 'ib_device_get_netdev()' without checking the return value. This oversight can cause a NULL pointer dereference if the network device is not found. The vulnerability affects the stable version of the Linux kernel.

Impact

Exploitation of this vulnerability could lead to a NULL pointer dereference, causing a kernel crash.

Remediation

The vulnerability has been fixed in the Linux kernel. Users can apply the latest patches available in the Linux kernel stable tree.

Added: May 6, 2026, 12:24 PM
Updated: May 6, 2026, 12:24 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
3.5
remediation
7.7
relevance
7.6
threat
3.2
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.