Linux Kernel NULL Pointer Dereference Vulnerability in RTL8723BS Staging Driver

Vulnerability

A vulnerability in the Linux kernel's staging driver for the RTL8723BS wireless chipset can lead to a NULL pointer dereference. This issue arises because the return value of the memory allocation function 'kzalloc_flex()' is used without checking if the allocation was successful, allowing for an unguarded dereference of the pointer. The vulnerability affects the Linux kernel stable tree.

Impact

Exploitation of this vulnerability can cause a NULL pointer dereference, leading to a crash of the kernel or the affected process.

Remediation

Users can upgrade to the latest version of the Linux kernel stable tree, where this vulnerability has been addressed.

Added: Jun 8, 2026, 5:41 PM
Updated: Jun 8, 2026, 5:41 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
5.0
remediation
7.7
relevance
9.3
threat
3.2
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.