NULL pointer dereference in Linux kernel - CVE-2026-45911
Published: May 28, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a NULL pointer dereference in the cdns3 driver resume path when switching roles during resume. A local user can trigger a role change while the system is resuming to cause a denial of service.
The issue occurs when the driver switches to host mode during resume and the xhci-hcd device probe is deferred.
How to mitigate CVE-2026-45911
Sources
- https://git.kernel.org/stable/c/49c99dc247ebf7361db9dbdade3dcebfffaf2c22
- https://git.kernel.org/stable/c/56289298431ed76700b9aac27a3b1d929fe61b8d
- https://git.kernel.org/stable/c/87e4b043b98a1d269be0b812f383881abee0ca45
- https://git.kernel.org/stable/c/94c742614899ff18a6b3e6f3cfbe7b9f36c865f3
- https://git.kernel.org/stable/c/d637f6ec149ffd2f8257bcc261561dc2e44dbb8c
- https://git.kernel.org/stable/c/fc086c0ce3db0eefbbeb66a5b1e626296336e33a
- https://git.kernel.org/stable/c/ff02bd303d2d78051771db51119d66c0cf442f47