SB20251226223 - NULL pointer dereference in Linux kernel acpi acpica driver
Published: December 26, 2025 Updated: December 31, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) NULL pointer dereference (CVE-ID: CVE-2023-54010)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to NULL pointer dereference within the acpi_db_display_objects() function in drivers/acpi/acpica/dbnames.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/35d67ffad6f5d78dbd800d354f5334c7b71a19e0
- https://git.kernel.org/stable/c/978e0d05547ae707d51a942fc7e85a34e181ee6f
- https://git.kernel.org/stable/c/ae5a0eccc85fc960834dd66e3befc2728284b86c
- https://git.kernel.org/stable/c/c409eb45f5ddae2e3b3faa76cefc87f3cd0d0e88
- https://git.kernel.org/stable/c/c9fcb2cfcbd4d7018d9f659f5b670f5b727d1968
- https://git.kernel.org/stable/c/d997c920a5305b37f0b8a40501b5aca10d099ecd
- https://git.kernel.org/stable/c/ed2e1e85644ca3d351324e9927a538c8af4df654
- https://git.kernel.org/stable/c/fee6133490091492dc66bcf71479bd53bd17a7d2
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.30