Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A NULL pointer dereference vulnerability has been identified in the legacy NCM driver of the Linux kernel. This issue arises from a change in the net_device lifecycle management, which deferred the allocation of the net_device. As a result, the driver attempts to access the net_device before it is fully initialized, leading to a crash. The vulnerability affects the Linux kernel stable tree.
Exploitation of this vulnerability causes a NULL pointer dereference, leading to a crash of the affected component.
The vulnerability has been addressed in the official Linux Git repository. Users can upgrade to the latest version of the Linux kernel to apply the fix.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.